sonatype / nexus-public

Sonatype Nexus Repository Open-source codebase mirror
https://www.sonatype.com/products/repository-oss-download
Eclipse Public License 1.0
1.94k stars 572 forks source link

NEXUS-20956 – Browsing of repo's exposed usernames (Uploader) and IP Addresses #266

Open TheAndrey opened 1 year ago

TheAndrey commented 1 year ago

Browsing of repo's exposed usernames (Uploader) and IP Addresses in the object's summary.

This information is publicly displayed to everyone, including unauthenticated users. And there is no way to restrict access to it. For example, IP address refers to confidential information.

image

Related links

nblair commented 1 year ago

Thanks for this suggestion, @TheAndrey. There currently is no way to hide this information, we'll leave this open to gauge demand for this specific change.

IslandNolan commented 38 minutes ago

Why is this a feature in the first place? At the very least there should be a configuration option provided to hide this.