FerryDocs
ArchitectureSecurity model

Connected git accounts

A git connection has read access only. Its secret stays on the server and goes only to the provider.

Edit on GitHub
Ferrykeeps the secretProvider hostGitHub or GitLabAnother host

You authorize Ferry on the page of the provider. Ferry gets read access only.

1 / 4

A lets Ferry read your repositories. You authorize it on the page of the provider itself. See Git accounts.

Read access only

ProviderWhat you authorizeAccess
GitHubA that reads the repositories that you chosecontents: read, metadata: read
GitLabA GitLab applicationThe scopes read_api and read_repository

What the server keeps

The server keeps the private key of the app, the OAuth tokens and client secret, or a personal access token. The API never returns them.

On this page