API keys, passwords or tokens committed into the repo.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-cli/test/card/list.js:44
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/certificateutil.js:74
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/certificateutil.js:99
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/data/card-store/valid/credentials/privateKey:1
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/data/id-cards/valid-with-roles/credentials/privateKey:1
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/data/id-cards/valid-with-yaml/credentials/privateKey:1
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/data/id-cards/valid/credentials/privateKey:1
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-common/test/idcard.js:211
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-playground/src/app/common/credentials/credentials.component.spec.ts:367
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-playground/src/app/common/credentials/credentials.component.spec.ts:384
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-playground/src/app/common/credentials/credentials.component.spec.ts:403
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-rest-server/key.pem:1
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-rest-server/test/server/key.pem:1
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Serious private-key Identified a Private Key, which may compromise cryptographic security and sensitive data encryption.
packages/composer-website/jekylldocs/tutorials/deploy-to-fabric-single-org.md:305
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
.travis.yml:44
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/network/download.js:67
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:58
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:65
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:76
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:85
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:93
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:101
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:113
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:126
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.
-
Worth fixing generic-api-key Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
packages/composer-cli/test/utils/cmdutils.js:138
A credential (key, password or token) appears in your code. Fix: Remove it, rotate the key, and load it from an environment variable instead.