You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: gitkraken-desktop/GKC-Security.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -11,9 +11,9 @@ Below is a chart outlining some basic security information regarding the type of
11
11
12
12
| Service | What information are we collecting | How is this information secured in the transfer| Where is this information stored | How is this information secured in storage |
13
13
| --- | --- | --- | --- | --- |
14
-
| Workspaces/Insights |Repo meta-data issues/PR’s| Encrypted with TLS | MongoDB Atlas | Encrypted at rest (AES-256) |
14
+
| Workspaces/Insights |Repository info: URL, org name, repo name, and issue count.<br>Pull request info: URL, author, title, description, comment count, and PR state.| Encrypted with TLS | MongoDB Atlas | Encrypted at rest (AES-256) |
15
15
| Teams & Users | Repo-relative file paths, number of lines changed, name of branch currently checked out, first commit SHA of the repository | Encrypted with TLS | MongoDB Atlas | Encrypted at rest (AES-256) |
16
-
| Subscriptions | Billing info: lastFour, name, type (credit card, paypal, ach...), zip, country, creditCard type (mastercard, visa...) | Encrypted with TLS | MongoDB Atlas | Encrypted at rest (AES-256) |
17
-
| Launchpad |Storing meta-data for issues/pull-requests/URLs| Encrypted with TLS | Postgres (RDS) | Encrypted at rest (AES-256) |
16
+
| Subscriptions | Billing info: name, payment type (credit card, paypal, ACH, etc.), last four digits of payment method, zip code, country, credit card type (mastercard, visa, etc.) | Encrypted with TLS | MongoDB Atlas | Encrypted at rest (AES-256) |
17
+
| Launchpad |URLs of issues and pullrequests, issue tracker and Git provider filters for saved views| Encrypted with TLS | Postgres (RDS) | Encrypted at rest (AES-256) |
18
18
| Cloud Patches | Info related to the patch (repo name/URL/provider/base branch name/etc.) + the patch content itself. | Encrypted with TLS | Patch info is stored in a Postgres database, patch content is stored in AWS S3. | SSE-S3, which uses 256-bit Advanced Encryption Standard (AES-256) |
19
19
| Proactive Conflict Detection | Repo-relative file paths, name and commit SHA of relevant branches, names of files changed, line numbers with changes, and first commit SHA of the repository | Encrypted with TLS | Redis (max TTL of 108 hours) | Encrypted at rest (AES-256)
0 commit comments