diff options
| author | Frederick Muriuki Muriithi | 2026-01-15 13:21:24 -0600 |
|---|---|---|
| committer | Frederick Muriuki Muriithi | 2026-01-15 13:21:24 -0600 |
| commit | 03fadc64478af584af7da765db185556b5e93a31 (patch) | |
| tree | 0175f0af890139868d5b71e5af14e631691fa637 | |
| parent | 9d117b8dd7bf26cfeeec8c28be0ee40883ff36cf (diff) | |
| download | gn-uploader-03fadc64478af584af7da765db185556b5e93a31.tar.gz | |
Remove unused, sensitive data.
We were not using this data, stored in the session. It is sensitive data, therefore, we avoid collecting it in the first place.
| -rw-r--r-- | uploader/session.py | 5 |
1 files changed, 0 insertions, 5 deletions
diff --git a/uploader/session.py b/uploader/session.py index 9cb305b..1dcf8ac 100644 --- a/uploader/session.py +++ b/uploader/session.py @@ -25,8 +25,6 @@ class SessionInfo(TypedDict): session_id: UUID user: UserDetails anon_id: UUID - user_agent: str - ip_addr: str masquerade: Optional[UserDetails] auth_server_jwks: Optional[dict[str, Any]] @@ -69,9 +67,6 @@ def session_info() -> SessionInfo: "logged_in": False }, "anon_id": anon_id, - "user_agent": request.headers.get("User-Agent"), - "ip_addr": request.environ.get("HTTP_X_FORWARDED_FOR", - request.remote_addr), "masquerading": None })) |
