Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Tokens not used for over 12 months will be automatically revoked without prior notice.
  • Users are responsible for managing their personal tokens. They should check them regularly and remove the ones that are no longer in use.
  • When a project is discontinued or no longer needs SonarQube, the associated token should be removed immediately to prevent unauthorized access.

User Deletion Policy

The Geant SonarQube instance implements a user retention policy to ensure security and efficient account management. To prevent the accumulation of inactive accounts:

  • Users who have not logged in for over 2 years can be deleted without prior notice.

  • It is the responsibility of users to maintain active access if they wish to retain their accounts.

  • When a user account is deleted, all associated personal tokens and project permissions will be permanently removed.

  • If a deleted user needs access again, they can re-register via sign-in with their federated account by SSO, and they need to request permission from an administrator.

  • Project owners should ensure critical project permissions are not solely assigned to inactive users to prevent disruptions.