Security & Privacy

Personally Identifiable Information

Scan Data Collection

Threat Agent Data Collection

During scans that occur while using Threat Agent, will collect the following data.

  • Dependency manager files

  • File Metadata

    • File name

    • File size

    • File locations relative to the root of the project

  • Whole file SHA1 signatures

  • File DNA signatures(As part of TrueMatch)

Threat Agent does not collect or transmit your source code to our server during standard scans.

SOURCE CODE will be collected and transmitted to our server if you select the --cloud-scan option when launching Threat Agent.

ThreatScan Data Collection

ThreatScan integrates directly with your authorized SCM; Github, Gitlab, or Bitbucket. During scans, a copy of your code is transmitted to our scan server, processed, and then destroyed. No copy of your code ever remains on our servers.

Last updated