What we can see

We read the record, not the work.

Here is exactly what theSitrep looks at inside your tools, and everything it doesn't.

Your tools already keep a record of who did what and when. That record is what we read. We never read your code, and we never read what your people wrote to each other.

GitHub and Bitbucket

Your code tools.

What we read
  • The repos you shared with us, and whether each one is private
  • Commits: the message, who wrote it, when
  • For each file in a commit, its name and how many lines were added and removed
  • Pull requests: title, who opened it, when it opened, merged, or closed, and which branches
  • Reviews: who reviewed, whether they approved or asked for changes, when
  • Comments left on a pull request
What we never see
  • Your code. Not a line of it, ever
  • What's inside any file
  • The changes themselves. We count the changed lines. We don't read them
  • Pull request descriptions
  • Issues
  • Your list of members

And we never write. theSitrep cannot push, merge, comment, or change anything in your repositories. The connection only reads.

Jira and ClickUp

Your ticket tools.

What we read
  • The ticket's ID and title
  • Its status, type, priority, labels, and due date
  • When it was created, and its original estimate
  • Who it's assigned to, and who raised it
  • When the status changed, and what it moved from and to
What we never see
  • Ticket descriptions
  • Comments. Any of them
  • Attachments. We never list them and never download one
  • Custom fields, story points, sprints, boards, epics
  • Time logged against a ticket
  • Your list of users

No writing here either. theSitrep cannot create, edit, move, or comment on a ticket.

What you control

All of it stays in your hands.

  1. 01You pick the repositories. It's GitHub's own picker, and we check it again every time we sync. Take one away and we stop reading it from that moment. On Bitbucket you pick the workspaces, and we read nothing until you do.
  2. 02We look back 90 days when you first connect. Nothing older than that is ever pulled in.
  3. 03Disconnect whenever you want. On GitHub that uninstalls us outright. On the others you revoke us from your own settings, and we tell you exactly where to click.
  4. 04Ask us anything. If your security team wants the full technical detail, every call we make and every value we store, we'll send it over. Just ask.

This page covers your code and ticket tools. Chat and calendar connections are described separately. How we handle personal data is set out in our privacy policy.

Questions, or want the technical version? [email protected]

Back to theSitrep