Terraform Cloud Token

Description

The source code repository contains sensitive information: Terraform Cloud API Token

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches Terraform Cloud API Token patterns in source code and configuration files

Vulnerable code example

TFC_TOKEN=abcdefghijklmn.atlasv1.ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789ABCDE
token = "abcdefghijklmn.atlasv1.ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789ABCDE"