Security

How we protect your data

Encryption at Rest

All data stored in our databases is encrypted using AES-256 encryption.

Encryption in Transit

All communications use TLS 1.3 encryption to protect data in transit.

OAuth Tokens

GitHub and Bitbucket tokens are encrypted with application-level encryption.

No Code Storage

We never store your source code. Only metadata is processed and stored.

What We Access

We DO access:

  • • Repository names and metadata
  • • Pull request titles, descriptions, and review comments
  • • Commit hashes and timestamps
  • • Deployment events and statuses
  • • Team member information (names, usernames)

We NEVER access:

  • • Your source code files
  • • Environment variables or secrets
  • • Database credentials
  • • Any credentials stored in your repository

Infrastructure Security

Hosted on secure, SOC 2 compliant infrastructure
Regular security audits and penetration testing
Automated vulnerability scanning
24/7 monitoring and incident response

Security Questions?

Our team is happy to answer any security-related questions.