Project

General

Profile

Actions

Bug #3766

closed

It is impossible to know who has created or removed an API account for Rudder

Added by Nicolas PERRON almost 11 years ago. Updated almost 11 years ago.

Status:
Released
Priority:
1
Category:
Web - Maintenance
Target version:
Severity:
UX impact:
User visibility:
Effort required:
Priority:
Name check:
Fix check:
Regression:

Description

An API account is like an admin one since it has many rights on the application but there is no log about its creation or removal in the event log.
In this situation, it could be possible to create an API account to destroy all the configuration or do something harmful, remove the API account without knowing who where behind. In my opinion, we should at least know who created and removed any API account.


Related issues 1 (0 open1 closed)

Follows Rudder - Bug #3784: There is no ID for the API AccountReleasedFrançois ARMAND2013-07-25Actions
Actions

Also available in: Atom PDF