41 lines
974 B
Plaintext
41 lines
974 B
Plaintext
![]() |
:example_env: CHECKOUT_API_SECRET_KEY
|
||
|
:example_name: checkout_api_secret_key
|
||
|
:example_secret: sk_64636be0-b5bd-4b51-945c-5832a3d8a7a0
|
||
|
:secret_type: secret
|
||
|
|
||
|
include::../../../shared_content/secrets/description.adoc[]
|
||
|
|
||
|
== Why is this an issue?
|
||
|
|
||
|
include::../../../shared_content/secrets/rationale.adoc[]
|
||
|
|
||
|
=== What is the potential impact?
|
||
|
|
||
|
include::../../../shared_content/secrets/impact/generic_impact.adoc[]
|
||
|
|
||
|
== How to fix it
|
||
|
|
||
|
// 1. Revoke leaked secrets
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/revoke.adoc[]
|
||
|
|
||
|
// 2. Analyze recent use to identify misuse
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/recent_use.adoc[]
|
||
|
|
||
|
// 3. Use a secret vault in the future
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/vault.adoc[]
|
||
|
|
||
|
// 4. Never hard-code secrets
|
||
|
|
||
|
include::../../../shared_content/secrets/fix/default.adoc[]
|
||
|
|
||
|
=== Code examples
|
||
|
|
||
|
include::../../../shared_content/secrets/examples.adoc[]
|
||
|
|
||
|
== Resources
|
||
|
|
||
|
include::../../../shared_content/secrets/resources/standards.adoc[]
|