Redact quoted JSON secret tokens in processing logs
This commit is contained in:
@@ -28,6 +28,9 @@ SENSITIVE_KEY_MARKERS = (
|
||||
"cookie",
|
||||
)
|
||||
SENSITIVE_TEXT_PATTERNS = (
|
||||
re.compile(r"(?i)[\"']authorization[\"']\s*:\s*[\"']bearer\s+[^\"']+[\"']"),
|
||||
re.compile(r"(?i)[\"']bearer[\"']\s*:\s*[\"'][^\"']+[\"']"),
|
||||
re.compile(r"(?i)[\"'](?:api[_-]?key|token|secret|password)[\"']\s*:\s*[\"'][^\"']+[\"']"),
|
||||
re.compile(r"(?i)\bauthorization\b\s*[:=]\s*bearer\s+[a-z0-9._~+/\-]+=*"),
|
||||
re.compile(r"(?i)\bbearer\s+[a-z0-9._~+/\-]+=*"),
|
||||
re.compile(r"\b[a-z0-9_-]{8,}\.[a-z0-9_-]{8,}\.[a-z0-9_-]{8,}\b", flags=re.IGNORECASE),
|
||||
|
||||
Reference in New Issue
Block a user