Policy / effective 28 August 2026

Privacy

The short version: the CLI runs locally, the docs site does not track you, and your incident bundle belongs to you.

CLI data

CI Outage Witness reads the GitHub Actions run you identify through GitHub’s read-only API. It may read runner diagnostic files only when you pass them with --runner-log. It writes one ZIP to the path you choose. The project has no server, account system, telemetry, analytics, or automatic upload.

Authentication

The CLI reads a token from GH_TOKEN, GITHUB_TOKEN, or your local GitHub CLI session. It uses the token only for requests to your configured GitHub API host. It does not write the token into the bundle. Read-only Actions and contents access is sufficient.

Redaction and sharing

Recognizable credential formats, sensitive assignments, private key blocks, and your configured patterns are replaced before files enter the bundle. Pattern matching cannot identify every arbitrary secret. You are responsible for reviewing a bundle before sharing it.

Documentation site

This site uses no cookies, analytics, advertising, fingerprinting, forms, or third-party runtime requests. A service worker stores public site files on your device so the documentation remains available offline. Clear the site’s storage in your browser to remove that cache.

Third parties and contact

GitHub handles API requests under its own terms when you run the CLI. The public status observation is fetched from githubstatus.com. Privacy questions can be opened as an issue in the project repository; do not include an incident bundle or secrets.