Privacy Policy

Data Collection and Processing

GitCuTi collects and processes personal data solely for the purpose of ticket management and user authentication. Processing is based on GDPR Art. 6(1)(b) (contract performance) and Art. 6(1)(f) (legitimate interest).

Authentication Data

Authentication is handled by an external identity provider (e.g. Microsoft Entra ID, Google, GitHub). The following data is transmitted:

Name (display name)

Email address

Profile picture (if provided by the IdP)

Unique user identifier (OIDC subject)

Usage Data

The following data is stored during usage:

Created tickets (title, description, status)

Comments on tickets

Team and role assignments


GitHub Integration

GitCuTi synchronizes tickets bidirectionally with GitHub. Ticket data (title, description, comments, labels) is transferred between GitCuTi and GitHub. Access to GitHub is performed using encrypted Personal Access Tokens (PAT).


Cookies

GitCuTi uses only technically necessary cookies. No tracking or analytics cookies are used.

Cookie Purpose Duration
.AspNetCore.Cookies Authentication (session) 8 hours
.AspNetCore.Culture Language preference 1 year
.gitcuti.cookieconsent Cookie consent 1 year

Your Rights

Under GDPR, you have the following rights regarding your personal data:

Right of access (Art. 15 GDPR)

Right to rectification (Art. 16 GDPR)

Right to erasure (Art. 17 GDPR)

Right to data portability (Art. 20 GDPR)


Contact

For questions about data protection, please contact the operator of this GitCuTi instance.