Skip to content

How we handle your code

Guardix accesses only repositories you connect and authorize through the GitHub App (for private code) or through public URL flows where supported.

Audits run against a specific snapshot (branch/commit) you choose — not your entire Git history unless the product explicitly requests it for a feature.

Retention policies follow the product and infrastructure configuration in effect for your environment. For contractual or compliance needs, contact us with your requirements.

Never commit secrets to repositories. Guardix analysis may surface sensitive patterns if they exist in code — treat repositories accordingly.


Audit methodology — how analysis and verification fit together.