Skip to content
Security

Built so you don't have to take our word.

DevGlimpse runs serverless on Cloudflare, Neon and Hasura Cloud. There is nothing for you to host, and the isolation guarantees below run as tests on every change.

Your browserDevGlimpse appCloudflare Pages
session JWT
readsHasurarow filters per tenant and role
sign-in, adminDevGlimpse APICloudflare Workers
tenant-scoped
storagePostgresNeon · row-level security
read-only token
sourceGitHubsigned webhooks + nightly reconcile

Tenant isolation

  • Every workspace is a tenant. The GraphQL layer (Hasura) filters every row by the tenant in your signed session.
  • Postgres row-level security enforces the same boundary a second time, underneath.
  • Both layers run in CI against real databases with tokens for different tenants and roles.

Identity and sessions

  • Sign-in is GitHub App user authorization, protected by a signed, HttpOnly state cookie.
  • Sessions are RS256-signed tokens scoped to one workspace and one role. The public key is served as JWKS, and no shared secret exists.
  • The callback hands the app a 60-second one-time code. A session token never appears in a URL.
  • Workspaces are created only after GitHub confirms both the install and that you are an active org admin.

GitHub access

  • Read-only permissions: Metadata, Pull requests, Contents (to list commits) and org Members.
  • DevGlimpse never fetches file contents or diffs.
  • All sync runs on short-lived installation tokens. Your personal token is used once at sign-in and never stored.
  • Webhooks are signature-verified before anything is queued.

The data we keep

  • Repositories, pull requests (titles, states, timestamps, sizes), reviews and review comments.
  • Commit metadata: author, date, message and line counts.
  • GitHub teams, org membership and your custom groups.
  • Daily metric rollups computed from the above, plus workspace settings and an audit log.

Control and lifecycle

  • Export contributors, pull requests, reviews and rollups as JSON at any time.
  • Delete the whole workspace immediately from the admin console.
  • Uninstalling puts the workspace in read-only mode with a visible deletion date 30 days out; the nightly sweep then removes it for good.
  • An append-only audit log records privileged actions; the database refuses edits to it.

Sub-processors

Cloudflare
Hosting, API Workers, queues, transactional email
Neon
Postgres database
Hasura Cloud
Dashboard GraphQL reads
PostHog
Product analytics, through a first-party proxy
GitHub
Source of the metadata you connect

Found a vulnerability? Email security@kubeace.com. We respond to every report.

Design partners

Build it with us.

We're working closely with a small group of teams of 20 to 500 engineers on GitHub. You bring the questions you can't answer today; we build the answers into DevGlimpse.

  • Free through early access Use DevGlimpse in production at no cost while we build together.
  • Founding pricing, locked Your rate is fixed when paid plans arrive. No minimum seats, ever.
  • A direct line to the builders A shared channel with the engineers writing DevGlimpse, not a ticket queue.
  • Shape what ships next AI impact, DORA, Linear and Jira: your needs set the order.