Ricerche recenti
Nessuna ricerca recente

Sid2
Data ingresso 04 mar 2024
·
Ultima attività 04 nov 2024
Seguiti
0
Follower
0
Attività totali
7
Voti
2
Abbonamenti
2
PANORAMICA ATTIVITÀ
BADGE
ARTICOLI
POST
COMMENTI NELLA COMMUNITY
COMMENTI AGLI ARTICOLI
PANORAMICA ATTIVITÀ
Ultima attività di Sid2
Sid2 ha commentato,
Tipene Hughes Is there any update on this? We are also facing this same issue during the development of our app
Visualizza commento · Data ultimo post: 04 nov 2024 · Sid2
0
Follower
0
Voti
0
Commenti
Sid2 ha commentato,
Hey Tipene,
My use case would be to securely store a user's access and refresh token in Zendesk. This app will be an extension of our software that allows it to integrate with Zendesk and the access and refresh token will be needed in Zendesk to access our software.
I'm aware that there is an OAuth option in Zendesk Support Apps but that does put more effort on the user to generate the token. We are trying to create a token from Zendesk with just a single click. We also have our user-based handling, so different users of Zendesk can be other users in our software which ultimately requires us to store multiple access and refresh tokens based on the users. This eliminates app metadata settings as an option as it only has a single copy for all users. Currently, our only storage is to create a custom user field but that exposes a single user's token to other users of the same Zendesk instance.
Do we have any other options here to securely store this sensitive data? Or is there any way to hide the custom user fields just like we hide the fields in the ticket?
Thanks,
Sid
Visualizza commento · Data ultimo post: 17 lug 2024 · Sid2
0
Follower
1
Voto
0
Commenti
Sid2 ha creato un post,
As the title suggested, I am looking for user-based storage for support apps in Zendesk.
I have already looked into adding it to the manifest or custom user fields. The Major problem I am facing is the exposure of sensitive data.
Manifest/User Fields can be accessed by any user for any user. So storing something secure like an auth token for the admin in the admin's user field becomes a security risk as it can be retrieved by an agent using the correct API.
Is there any storage for support apps that can be suitable for my use case?
Data ultimo post: 04 mar 2024 · Sid2
1
Follower
4
Voti
2
Commenti