Loading...
Loading...
8 findings
80 | CRITICAL | cloud | AWS Access Key | s3://prod-data-eu/legacy/config.yml | prod-data-eu scw://bucket/prod-data-eu | aws_access_key_id: AKIA****PROD | Valid |
80 | CRITICAL | saas | Stripe Secret Key | secret://prod-stripe-key/data | prod-stripe-key gcp://secretmanager/prod-stripe-key | STRIPE_SECRET=sk_live_**** | Valid |
60 | HIGH | saas | GitHub Personal Access Token | s3://staging-uploads/.env | staging-uploads arn:aws:s3:::staging-uploads | GITHUB_TOKEN=ghp_**** | Valid |
60 | HIGH | database | Database Connection String | /etc/myapp/config.yml | prod-api-7f3b9a scw://instance/i-7f3b9a | DATABASE_URL=postgres://orders_rw:****@prod-orders.eu-west-1.rds.amazonaws.com:5432/orders | Valid |
45 | HIGH | database | Database Connection String | blob://prodeustorage/legacy/migrate.sql | prodeustorage azure://Microsoft.Storage/storageAccounts/prodeustorage | postgres://admin:s3cr3t@db.example.com | Unknown |
12 | CRITICAL | cloud | AWS Access Key | s3://dev-uploads/legacy/keys.txt | dev-uploads scw://bucket/dev-uploads | AKIA****REVOKED | Invalid |
9 | HIGH | saas | GitHub Personal Access Token | s3://staging-uploads/old/.env.bak | staging-uploads arn:aws:s3:::staging-uploads | GITHUB_TOKEN=ghp_revoked | Invalid |
9 | HIGH | cryptographic | PEM Private Key | s3://dev-uploads/keys/old.pem | dev-uploads scw://bucket/dev-uploads | -----BEGIN RSA PRIVATE KEY----- | Invalid |