about summary refs log tree commit diff
diff options
context:
space:
mode:
authorFrederick Muriuki Muriithi2026-01-15 13:21:24 -0600
committerFrederick Muriuki Muriithi2026-01-15 13:21:24 -0600
commit03fadc64478af584af7da765db185556b5e93a31 (patch)
tree0175f0af890139868d5b71e5af14e631691fa637
parent9d117b8dd7bf26cfeeec8c28be0ee40883ff36cf (diff)
downloadgn-uploader-main.tar.gz
Remove unused, sensitive data. HEAD main
We were not using this data, stored in the session. It is sensitive
data, therefore, we avoid collecting it in the first place.
-rw-r--r--uploader/session.py5
1 files changed, 0 insertions, 5 deletions
diff --git a/uploader/session.py b/uploader/session.py
index 9cb305b..1dcf8ac 100644
--- a/uploader/session.py
+++ b/uploader/session.py
@@ -25,8 +25,6 @@ class SessionInfo(TypedDict):
     session_id: UUID
     user: UserDetails
     anon_id: UUID
-    user_agent: str
-    ip_addr: str
     masquerade: Optional[UserDetails]
     auth_server_jwks: Optional[dict[str, Any]]
 
@@ -69,9 +67,6 @@ def session_info() -> SessionInfo:
                 "logged_in": False
             },
             "anon_id": anon_id,
-            "user_agent": request.headers.get("User-Agent"),
-            "ip_addr": request.environ.get("HTTP_X_FORWARDED_FOR",
-                                           request.remote_addr),
             "masquerading": None
         }))