Skip to content

Security Alert: Sensitive Information Detected in Public Repository #14

@vyastj

Description

@vyastj

Hello TribeHR,

Our security tools have identified a few in the public repository TribeHR/AppDirect-PHP-Wrapper. Details are as follows:

🚨 [HIGH] Keyword 'secret' found in AppDirectConnector.php at line 6 https://raw.githubusercontent.com/TribeHR/AppDirect-PHP-Wrapper/master/AppDirectConnector.php
🚨 [MEDIUM] Keyword 'token' found in AppDirectConnector.php at line 6 https://raw.githubusercontent.com/TribeHR/AppDirect-PHP-Wrapper/master/AppDirectConnector.php
🚨 [HIGH] Possible secret assignment in AppDirectConnector.php https://raw.githubusercontent.com/TribeHR/AppDirect-PHP-Wrapper/master/AppDirectConnector.php
🚨 [HIGH] Keyword 'token' found in AppDirectEvent.php at line 6 https://raw.githubusercontent.com/TribeHR/AppDirect-PHP-Wrapper/master/AppDirectEvent.php
🚨 [HIGH] Keyword 'secret' found in README.md at line 6 https://raw.githubusercontent.com/TribeHR/AppDirect-PHP-Wrapper/master/README.md

Could you please review these findings and, if feasible, change the repository's visibility from public to private to prevent potential exposure of sensitive AppDirect information?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions