Packagecloud Token
Description
The source code repository contains sensitive information: PackageCloud Token
Detection Strategy
• Matches PackageCloud Token patterns in source code and configuration files
Vulnerable code example
PACKAGECLOUD_TOKEN=7f3a9c2e8b5d1f6a0c4e9b2d7f1a8c3e6b9d2f5a1c8e3b6d
.circleci/config.yml: PACKAGECLOUD_TOKEN: "5cf209e7ab6d3841f6a92c0de7b53f18a4d6c92be0713fa8"
packagecloud_token: 9d2f5b8e1a4c7f0b3e6a9d2c5f8b1e4a7d0c3f6b9e2a5d8e
PACKAGECLOUD_API_TOKEN=3f6a9d2c5f8b1e4a7d0c3f6b9e2a5d8c1f4b7e0a3d6c9f2a
PACKAGECLOUD_TOKEN => '9e7ab6d3841f6a92c0de7b53f18a4d6c92be0713fa85cf20'Free trial
Search for vulnerabilities in your apps for free with Fluid Attacks' automated security testing! Start your 21-day free trial and discover the benefits of the Continuous Hacking Essential plan. If you prefer the Advanced plan, which includes the expertise of Fluid Attacks' hacking team, fill out this contact form.