41 lines
993 B
Plaintext
41 lines
993 B
Plaintext
![]() |
:example_env: FOREST_ADMIN_API_KEY
|
||
|
:example_name: forest_admin_api_key
|
||
|
:example_secret: 1da9b7787c63db87de79ffb00df729550b5c155f8bdc293538b0e352d8a311a7
|
||
|
:secret_type: secret
|
||
|
|
||
|
include::../../../shared_content/secrets/description.adoc[]
|
||
|
|
||
|
== Why is this an issue?
|
||
|
|
||
|
include::../../../shared_content/secrets/rationale.adoc[]
|
||
|
|
||
|
=== What is the potential impact?
|
||
|
|
||
|
include::../../../shared_content/secrets/impact/generic_impact.adoc[]
|
||
|
|
||
|
== How to fix it
|
||
|
|
||
|
// 1. Revoke leaked secrets
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/revoke.adoc[]
|
||
|
|
||
|
// 2. Analyze recent use to identify misuse
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/recent_use.adoc[]
|
||
|
|
||
|
// 3. Use a secret vault in the future
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/vault.adoc[]
|
||
|
|
||
|
// 4. Never hard-code secrets
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/default.adoc[]
|
||
|
|
||
|
=== Code examples
|
||
|
|
||
|
include::../../../shared_content/secrets/examples.adoc[]
|
||
|
|
||
|
== Resources
|
||
|
|
||
|
include::../../../shared_content/secrets/resources/standards.adoc[]
|