Users email addresses leak through the API regardless of GitHub and Gitcoin profile settings
Discussion
A few months ago, I sent an email leak problem in the API to the email address: [email protected].
Note: It will turn out that in some of the profiles the email addresses on GitHub and in Gitcoin are hidden (private / not shared) and they are displayed in the API.
Unfortunately I didn't get any reply. For the sake of users, I am creating this issue with a discussion of how to fix this problem. This is incompatible with the GDPR and we need to consider how to solve it if these addresses in the API are necessary.
The entire report with all details is available under a private link: https://gist.github.com/oritwoen/a253b526c3f3e144b07c9456f1809737
ping @Kweiss @owocki
I thought it was already solved and closed, but it turns out that emails that are not publicly visible on either Gitcoin or GitHub are displayed in the API.
Please take a look at this @owocki @thelostone-mc