Skip to content

Recommend revoking secrets instead of scrubbing them

What does this MR do and why?

Removing secrets does not fully remediate the risk - If leaked secrets have been saved, they may continue to be used until they are revoked. Revocation should be prioritized over removal.

References

Screenshots or screen recordings

Before After

How to set up and validate locally

MR acceptance checklist

Evaluate this MR against the MR acceptance checklist. It helps you analyze changes to reduce risks in quality, performance, reliability, security, and maintainability.

Merge request reports

Loading