Privacy Policy
Data Collection and Processing
GitCuTi collects and processes personal data solely for the purpose of ticket management and user authentication. Processing is based on GDPR Art. 6(1)(b) (contract performance) and Art. 6(1)(f) (legitimate interest).
Authentication Data
Authentication is handled by an external identity provider (e.g. Microsoft Entra ID, Google, GitHub). The following data is transmitted:
Name (display name)
Email address
Profile picture (if provided by the IdP)
Unique user identifier (OIDC subject)
Usage Data
The following data is stored during usage:
Created tickets (title, description, status)
Comments on tickets
Team and role assignments
GitHub Integration
GitCuTi synchronizes tickets bidirectionally with GitHub. Ticket data (title, description, comments, labels) is transferred between GitCuTi and GitHub. Access to GitHub is performed using encrypted Personal Access Tokens (PAT).
Cookies
GitCuTi uses only technically necessary cookies. No tracking or analytics cookies are used.
| Cookie | Purpose | Duration |
|---|---|---|
.AspNetCore.Cookies |
Authentication (session) | 8 hours |
.AspNetCore.Culture |
Language preference | 1 year |
.gitcuti.cookieconsent |
Cookie consent | 1 year |
Your Rights
Under GDPR, you have the following rights regarding your personal data:
Right of access (Art. 15 GDPR)
Right to rectification (Art. 16 GDPR)
Right to erasure (Art. 17 GDPR)
Right to data portability (Art. 20 GDPR)
Contact
For questions about data protection, please contact the operator of this GitCuTi instance.