Security
Your source code is never stored. Only the documentation is.
The short version for whoever has to approve this: VizRepo reads a repository to write its documentation, then deletes the copy. What stays with us is the documentation you would happily put in your own wiki.
Five facts to take to your security review
- No source code at rest. The repository is cloned for the scan and deleted when it ends. We keep the generated docs, endpoint paths, schema names and diagrams.
- Read-only access is enough. Connect with a fine-grained token limited to one repository and read permission only. Writing docs back to your repo is a separate, opt-in feature.
- Your code is not used to train AI models. Code excerpts are sent to our AI provider only to write the documentation, under a data processing agreement.
- Hosted in the EU. Servers and database run in Frankfurt, Germany. Credentials are encrypted with AES-256-GCM.
- You stay in control. Delete a project or your account and its data is removed. Enterprise customers can use their own AI provider key or run VizRepo in their own cloud.
What stays with us and what does not
| Data | Stored by VizRepo? | Notes |
|---|---|---|
| Source code files | No | Cloned for the scan, deleted right after |
| Generated documentation | Yes | The product. Deletable at any time |
| Endpoint paths, table and field names, file paths | Yes | Needed to render the docs and diagrams |
| Repository access token | Yes, encrypted | AES-256-GCM; never logged, never returned by the API |
| Secrets and .env values | No | .env files are not read; only variable names found in code are listed |
| Account email and name | Yes | For sign-in and billing |
Repository access
- Recommended: a fine-grained personal access token scoped to a single repository with read-only Contents permission. Works with GitHub, GitLab, Bitbucket, Azure DevOps, Gitea and self-hosted Git.
- Sign-in with GitHub is offered for convenience. GitHub's OAuth only has a broad repository scope, so for the tightest setup use a fine-grained token instead.
- Pushing generated docs into your repository is off by default and needs a token with write access that you provide for that purpose.
- Disconnect at any time. The stored token is deleted with the connection.
How the AI part works
- To document an endpoint, the relevant code excerpts are sent to our AI model provider (Anthropic) over an encrypted connection.
- API data is not used to train models.
- The provider may keep request logs for a limited period for abuse monitoring, under its standard terms. Enterprise customers who need zero retention can use their own provider account with their own agreement.
- No customer's data is ever mixed into another customer's scan.
Infrastructure and access
- Frankfurt, Germany. Encrypted in transit (TLS) and at rest.
- Sign-in through Firebase Authentication with Google, GitHub or email.
- Project access is limited to the owner and the members they invite.
- Scans run in isolated temporary directories that are removed after every scan, including failed ones.
Prefer to keep everything inside your own cloud?
VizRepo can run as software you install, not a service that processes your code. It deploys into your AWS or Azure account and uses the AI model your company has already approved, such as Azure OpenAI or Amazon Bedrock. Your code, the documentation and the AI traffic never leave your environment. See the self-hosted page for details.
- Self-hosted in your AWS or Azure account, with your approved LLM.
- Or stay on our cloud and use your own AI provider key.
- Signed Data Processing Addendum and help with security questionnaires.
Questions
- Can an employee of VizRepo read our code?
- There is no stored code to read. Generated documentation is stored and access to production data is restricted to operating the service.
- What happens to the clone if a scan fails?
- The temporary directory is removed in every case, including failures and cancellations.
- Is the documentation itself sensitive?
- It describes how your system behaves, so treat it like your internal wiki. It is only visible to project members unless you create a share link, which you can revoke.
- Who do I contact?
- info@vizrepo.com. We answer security questionnaires.
Try it on your own repository
Connect a repo, run one scan, and read what each endpoint does. Starter is free. Pro has a 14-day free trial.