about summary refs log tree commit diff
path: root/uploader/session.py
diff options
context:
space:
mode:
authorFrederick Muriuki Muriithi2026-01-15 13:21:24 -0600
committerFrederick Muriuki Muriithi2026-01-15 13:21:24 -0600
commit03fadc64478af584af7da765db185556b5e93a31 (patch)
tree0175f0af890139868d5b71e5af14e631691fa637 /uploader/session.py
parent9d117b8dd7bf26cfeeec8c28be0ee40883ff36cf (diff)
downloadgn-uploader-03fadc64478af584af7da765db185556b5e93a31.tar.gz
Remove unused, sensitive data.
We were not using this data, stored in the session. It is sensitive
data, therefore, we avoid collecting it in the first place.
Diffstat (limited to 'uploader/session.py')
-rw-r--r--uploader/session.py5
1 files changed, 0 insertions, 5 deletions
diff --git a/uploader/session.py b/uploader/session.py
index 9cb305b..1dcf8ac 100644
--- a/uploader/session.py
+++ b/uploader/session.py
@@ -25,8 +25,6 @@ class SessionInfo(TypedDict):
     session_id: UUID
     user: UserDetails
     anon_id: UUID
-    user_agent: str
-    ip_addr: str
     masquerade: Optional[UserDetails]
     auth_server_jwks: Optional[dict[str, Any]]
 
@@ -69,9 +67,6 @@ def session_info() -> SessionInfo:
                 "logged_in": False
             },
             "anon_id": anon_id,
-            "user_agent": request.headers.get("User-Agent"),
-            "ip_addr": request.environ.get("HTTP_X_FORWARDED_FOR",
-                                           request.remote_addr),
             "masquerading": None
         }))