Npm Access Token

Description

The source code repository contains sensitive information: npm Access Token

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches npm Access Token patterns in source code and configuration files

Vulnerable code example

NPM_TOKEN=npm_aBcDeFgHiJkLmNoPqRsTuVwXyZ0123456789
//registry.npmjs.org/:_authToken=npm_aBcDeFgHiJkLmNoPqRsTuVwXyZ0123456789