Check sensitive information
Description
No secrets or credentials are included in the source code
VisionBoard Inclusion
We checked the secret_scanning_enabled_for_new_repositories
field in the GitHub Organization API and
the secret_scanning_status
field in the GitHub Repositories API to verify if the project has enforced
this policy, more information
Details
- Default Category: service authentication
- Default Priority Group: P2
- Implementation Details: It is computed (details).
- C-SCRM: true
- Mitre: CWE-540
- Sources: OpenSSF Best Practices Badge Passing Level (no_leaked_credentials)
- How To: Github Docs