RQ is designed so that repository access remains under customer control. The RQ Agent runs within your own environment and performs repository operations locally while communicating with the RQ Platform to provide runtime traceability and engineering insights.
The RQ Agent is deployed and managed by your organization. Customers decide where it runs, which repositories it can access and when collection is enabled.
Features such as Symbol Inspector and source browsing may request source files through the RQ Agent. Files may be cached temporarily to improve performance but are not part of RQ's long-term engineering knowledge.
Repository access can be revoked at any time by disabling the RQ Agent or removing its repository credentials. Repository access always remains under customer control.
If you believe you have discovered a security issue affecting RQ Platform, please contact us with sufficient information to reproduce the issue. We appreciate responsible disclosure and will investigate all legitimate reports.
Back to Home