Skip to content

Secret Detection Catalog

Current state

The gateway currently uses an optimized catalog for secret detection.

What is already integrated

  • OpenAI API keys
  • GitHub tokens
  • Slack tokens
  • AWS access key IDs
  • PEM private key blocks
  • PEM certificate blocks
  • inline api_key, token, secret, password, passwd patterns

What is not integrated yet

  • external password/key databases
  • Advanced vulnerability templates
  • Custom pattern-matching rules for proprietary secrets