Pesquisas recentes
Sem pesquisas recentes

Sid2
Entrou em 04 de mar. de 2024
·
Última atividade em 04 de nov. de 2024
Seguindo
0
Seguidores
0
Atividade total
7
Votos
2
Assinaturas
2
VISÃO GERAL DA ATIVIDADE
MEDALHAS
ARTIGOS
PUBLICAÇÕES
COMENTÁRIOS NA COMUNIDADE
COMENTÁRIOS EM ARTIGOS
VISÃO GERAL DA ATIVIDADE
Atividade mais recente por Sid2
Sid2 comentou,
Tipene Hughes Is there any update on this? We are also facing this same issue during the development of our app
Exibir comentário · Publicado 04 de nov. de 2024 · Sid2
0
Seguidores
0
Votos
0
Comentários
Sid2 comentou,
Hey Tipene,
My use case would be to securely store a user's access and refresh token in Zendesk. This app will be an extension of our software that allows it to integrate with Zendesk and the access and refresh token will be needed in Zendesk to access our software.
I'm aware that there is an OAuth option in Zendesk Support Apps but that does put more effort on the user to generate the token. We are trying to create a token from Zendesk with just a single click. We also have our user-based handling, so different users of Zendesk can be other users in our software which ultimately requires us to store multiple access and refresh tokens based on the users. This eliminates app metadata settings as an option as it only has a single copy for all users. Currently, our only storage is to create a custom user field but that exposes a single user's token to other users of the same Zendesk instance.
Do we have any other options here to securely store this sensitive data? Or is there any way to hide the custom user fields just like we hide the fields in the ticket?
Thanks,
Sid
Exibir comentário · Publicado 17 de jul. de 2024 · Sid2
0
Seguidores
1
Votos
0
Comentários
Sid2 criou uma publicação,
As the title suggested, I am looking for user-based storage for support apps in Zendesk.
I have already looked into adding it to the manifest or custom user fields. The Major problem I am facing is the exposure of sensitive data.
Manifest/User Fields can be accessed by any user for any user. So storing something secure like an auth token for the admin in the admin's user field becomes a security risk as it can be retrieved by an agent using the correct API.
Is there any storage for support apps that can be suitable for my use case?
Publicado 04 de mar. de 2024 · Sid2
1
Seguidor
4
Votos
2
Comentários