diff options
| author | Frederick Muriuki Muriithi | 2026-01-15 13:21:24 -0600 |
|---|---|---|
| committer | Frederick Muriuki Muriithi | 2026-01-15 13:21:24 -0600 |
| commit | 03fadc64478af584af7da765db185556b5e93a31 (patch) | |
| tree | 0175f0af890139868d5b71e5af14e631691fa637 /uploader | |
| parent | 9d117b8dd7bf26cfeeec8c28be0ee40883ff36cf (diff) | |
| download | gn-uploader-03fadc64478af584af7da765db185556b5e93a31.tar.gz | |
Remove unused, sensitive data.
We were not using this data, stored in the session. It is sensitive data, therefore, we avoid collecting it in the first place.
Diffstat (limited to 'uploader')
| -rw-r--r-- | uploader/session.py | 5 |
1 files changed, 0 insertions, 5 deletions
diff --git a/uploader/session.py b/uploader/session.py index 9cb305b..1dcf8ac 100644 --- a/uploader/session.py +++ b/uploader/session.py @@ -25,8 +25,6 @@ class SessionInfo(TypedDict): session_id: UUID user: UserDetails anon_id: UUID - user_agent: str - ip_addr: str masquerade: Optional[UserDetails] auth_server_jwks: Optional[dict[str, Any]] @@ -69,9 +67,6 @@ def session_info() -> SessionInfo: "logged_in": False }, "anon_id": anon_id, - "user_agent": request.headers.get("User-Agent"), - "ip_addr": request.environ.get("HTTP_X_FORWARDED_FOR", - request.remote_addr), "masquerading": None })) |
