Security
SSH keys and access reviews
Give people their own SSH access, and review who can reach the account.
-
1
Add your key
In Your settings → Security, add your SSH public key (the contents of your .pub file).
-
2
Give access
On Pro and above, Security → Servers gives a member SSH access to a server as its deploy user, with the keys on their profile. When they change their keys, or leave the account, the server is updated.
-
3
Review access
On the Team plan, Security → Access lists members (with two-factor status), API tokens and SSH access. Tick anything that should go and choose Complete review; the removals happen and the review is kept as evidence.
-
4
Reminders
A finding appears when the last review is more than 90 days old, and for members without two-factor authentication and API tokens unused for 90 days.
Still stuck? Email us, or send feedback from inside the app.