New
Introducing React Doctor for Enterprise

Security

The React Doctor GitHub App requests read-only access to repository contents and pull request metadata. It never writes to your codebase, and it does not store your source code or share it with third parties. React Doctor does not use your code to train models unless you explicitly opt in.

  • Read-only access: No write permissions to your code
  • No code storage: Cloned at analysis time, discarded after
  • Revocable any time: Uninstall from GitHub in one click
  • No model training by default: Your code is never used for training unless you explicitly opt in

With your explicit opt-in, React Doctor's tools may contribute de-identified data derived from your code to help improve our products and services. This is off by default and can be turned off at any time. See our Privacy Policy and Data Use overview for details.

Reporting Security Issues

The security of our systems and user data is our top priority. We appreciate the work of security researchers acting in good faith in identifying and reporting potential vulnerabilities.

If you have any security concerns, happy to answer any questions. aiden@million.dev or DM on X