Uploaded image for project: 'Documentation'
  1. Documentation
  2. DOCS-13794

Remove .git folder from being published publicly

    XMLWordPrintable

    Details

    • Type: Task
    • Status: Resolved
    • Priority: Minor - P4
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: None
    • Component/s: drivers
    • Labels:
      None
    • Last comment by Customer:
      true
    • Story Points:
      2
    • Sprint:
      DET: FY2021Q2S6, DevEd Q3S3 Charizard (Sept. 8)

      Description

      Description

      Hello,

      We've received reports that api.mongodb.com publishes its .git directory publicly. The examples given are:

      This is a very minor information leak (specific commit information, private github repository name), but I wanted to ensure it was on your radar for a future remediation.

      Please let me know if there's any additional detail I can add to this ticket or if there are any questions I can answer.

      Thanks!
      Darren

      Scope of changes

      Impact to Other Docs

      MVP (Work and Date)

      Resources (Scope or Design Docs, Invision, etc.)

        Attachments

          Activity

            People

            Assignee:
            chris.cho Christopher Cho
            Reporter:
            darren.gruber Darren Gruber
            Participants:
            Last commenter:
            Christopher Cho Christopher Cho
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved:
              Days since reply:
              47 weeks, 3 days ago
              Date of 1st Reply: