Public Repositories Threats

The Public Repositories tab shows the following threats:

To enable searching for potential leaks, you must define certain assets:

The threats are refreshed each time you open the tab, so they are shown only if they are currently a threat. By default, the threats are sorted by the date of the last report, with the most recent first. You can reverse the sort order or sort by the number of mentions.

You can filter the view by clicking the filter buttons above the table or by using the Query Language. For more information, see Filter and search threats.

Leaked secret threats

Each line on the Leaked Secrets tab displays a potential leaked secret that was found in a single Git public repository:

temporary placeholder

The threats displayed in the previous figure were found in separate repositories, with 1, 1, 74, 102, and 1 mentions in each repository, respectively.

To see the threat details, click the threat line. The following figure shows the detail of the last threat in the previous figure: temporary placeholder

The threat details are presented in these sections:

  • Repository information (section A) - Displays all relevant information about the detected repository and the assets that matched the repository content. The details show a highlighted image of the matched assets in the relevant parts of the code (section C).

  • Secret code exposure locations (section B)- Displays a table that details all the places in the code where the secret was exposed. Every mention of the secret includes information about the commit, developers, relevant dates, and the file. To review all the specific secret mentions and to see the context, click the filename. A highlighted image of the mention in that file is displayed.

  • Scroll to see multiple mentions.

The following leaked secrets are searched for:

AWS client IDAWS MWS keyAWS secret keyConnection stringDatabase file
Facebook access tokenFacebook secretGeneric API keyGeneric secretGitHub
Google API keyGoogle OAuthGoogle OAuth access tokenHeroku API keyHtpasswd File
LinkedIn secretLog fileMailchimp API keyManaged cloud servicesOutlook Team
Password In CURLPassword In URLPassword manager filePayPal Braintree access tokenPicatic API key
Private keyPrivate key fileRemote Desktop Connection fileSFTP configuration fileSlack
Slack webhookSquare access tokenSquare OAuth secretSSH keySSH password
Stripe API keyTwilio API keyTwitter secretUser and passwordUser password and domains

Asset mention threats

Each line on the Asset Mentions tab displays a company asset that was found in a single Git public repository. These assets are defined in the Code mentions and Domains assets.

temporary placeholder

The threats displayed in the previous figure were found in separate repositories, with 97, 132, 181, 563, and 72 mentions in each repository, respectively.

To see the threat details, click the threat line:

temporary placeholder

The threat details are presented in these sections:

  • Repository information (section A) - Displays all relevant information about the detected repository and the assets that matched the repository content.

  • Asset mention details (section B) - Displays a table that details all the places in the code where the assets were mentioned. Every mention includes information about the. A highlighted image of the mention in that file is displayed. 
    Scroll to see multiple mentions.

You can use the Alert Profilerto fine-tune which threats trigger alerts.