Skip to content
This repository was archived by the owner on Mar 28, 2023. It is now read-only.

Log messages shouldn't contain secrets #315

Open
bsquizz opened this issue Jun 11, 2020 · 0 comments
Open

Log messages shouldn't contain secrets #315

bsquizz opened this issue Jun 11, 2020 · 0 comments

Comments

@bsquizz
Copy link
Contributor

bsquizz commented Jun 11, 2020

The yupana startup logs print the env which reveals a few secrets:

CW_AWS_SECRET_ACCESS_KEY
DJANGO_SECRET_KEY
CW_AWS_ACCESS_KEY_ID
DATABASE_PASSWORD

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant