Back to landing

Private scanning

A separate session for repositories only you can see. This is what it does with your code:

You choose the repositories

GitHub asks which repositories DriftDetector may read. It gets read access to code and metadata on those and nothing else, and you can change the list on GitHub at any time.

Your code is never written to disk

It streams from GitHub into the scanner’s memory without passing through this browser. The scan stops rather than continue if a single file reaches disk.

Nothing about the scan is kept

No cached clone, no scores, no repository name, no report. The report is built in this page and is gone when you close it.

The one stored thing is your GitHub token, encrypted, until you disconnect or 30 days pass, whichever comes first.

1 Authorize on GitHub 2 Choose repositories 3 Pick one and confirm the scan

1 Authorize on GitHub
2 Choose repositories
3 Pick one and confirm the scan

Continue with GitHub

This connects GitHub to this browser. It does not create a DriftDetector account.