DATA SOURCES
Open Web
Source Code Secret Detection
4 min
secret detection overview secret detection is the process of identifying sensitive information related to your organisation that may be unintentionally exposed on platforms like github or dockerhub we scan all github and dockerhub events that flare finds using a set of rules designed to detect patterns that match known secret formats the types of secrets we look for are listed below generic vs non generic secrets some secrets are classified as generic these are common patterns that can easily trigger false positives, making them noisier and less reliable indicators of a real leak because of this, events are scored differently depending on whether the detected secrets are generic or not non generic secrets β if we detect one or more non generic secrets in an event, we raise its score to indicate greater risk only generic secrets β if all detected secrets are generic, we lower the eventβs score to reduce unnecessary alerts this approach helps prioritise real threats while minimising noise from harmless matches querying for secrets βi want to find all flare events that contain secretsβ how to do it source filtering restrict your search to source code by specifying the source query contains secrets\ true dive deeper you can specify which source you want to explore using metadata source\ dockerhub or metadata source\ driller github βwant to find all flare events that contain a certain secretβ how to do it source filtering restrict your search to source code by specifying the source query secrets metadata type \[select from list below] dive deeper you can specify which source you want to explore using metadata source\ dockerhub or metadata source\ driller github secret types adafruit io key β adafruit io key adobe oauth client secret β adobe oauth client secret age recipient x25519 public key β age recipient (x25519 public key) age identity x22519 secret key β age identity (x22519 secret key) anthropic api key β anthropic api key aws appsync api key β aws appsync api key amazon resource name β amazon resource name artifactory api key β artifactory api key auth0 application credentials β auth0 application credentials aws api key β aws api key aws secret access key β aws secret access key aws account id β aws account id aws session token β aws session token amazon mws auth token β amazon mws auth token aws api credentials β aws api credentials azure connection string β azure connection string azure app configuration connection string β azure app configuration connection string azure personal access token β azure personal access token bitbucket app password β bitbucket app password blynk device access token β blynk device access token blynk organization access token β blynk organization access token blynk organization client credentials β blynk organization client credentials codeclimate reporter id β codeclimate reporter id crates io api key β crates io api key databricks personal access token β databricks personal access token digitalocean application access token β digitalocean application access token digitalocean personal access token β digitalocean personal access token digitalocean refresh token β digitalocean refresh token django secret key β django secret key docker hub personal access token β docker hub personal access token doppler cli token β doppler cli token doppler personal token β doppler personal token doppler service token β doppler service token doppler service account token β doppler service account token doppler scim token β doppler scim token doppler audit token β doppler audit token dropbox access token β dropbox access token dependency track api key β dependency track api key dynatrace token β dynatrace token facebook secret key β facebook secret key facebook access token β facebook access token figma personal access token β figma personal access token firecrawl api key β firecrawl api key google cloud storage bucket β google cloud storage bucket generic secret β generic secret connection string in net configuration β connection string in net configuration generic password β generic password generic username and password β generic username and password generic api key β generic api key credentials in net system net networkcredential β credentials in net system net networkcredential credentials in net system directoryservices directoryentry β credentials in net system directoryservices directoryentry sensitive value in net configuration β sensitive value in net configuration gitalk oauth credentials β gitalk oauth credentials github personal access token β github personal access token github oauth access token β github oauth access token github app token β github app token github refresh token β github refresh token github client id β github client id github secret key β github secret key gitlab runner registration token β gitlab runner registration token gitlab personal access token β gitlab personal access token gitlab pipeline trigger token β gitlab pipeline trigger token google client id β google client id google oauth client secret β google oauth client secret google oauth access token β google oauth access token google api key β google api key google oauth credentials β google oauth credentials hardcoded gradle credentials β hardcoded gradle credentials grafana api token β grafana api token grafana cloud api token β grafana cloud api token grafana service account token β grafana service account token groq api key β groq api key hashicorp vault service token β hashicorp vault service token hashicorp vault batch token β hashicorp vault batch token hashicorp vault recovery token β hashicorp vault recovery token hashicorp vault unseal key β hashicorp vault unseal key heroku api key β heroku api key http basic authentication β http basic authentication http bearer token β http bearer token huggingface user access token β huggingface user access token jenkins token or crumb β jenkins token or crumb jenkins setup admin password β jenkins setup admin password jina search foundation api key β jina search foundation api key json web token secret β json web token secret kagi api key β kagi api key password hash kerberos β password hash (kerberos 5, etype 23, as rep) kubernetes bootstrap token β kubernetes bootstrap token linkedin client id β linkedin client id linkedin secret key β linkedin secret key mailchimp api key β mailchimp api key mailgun api key β mailgun api key mapbox public access token β mapbox public access token mapbox secret access token β mapbox secret access token mapbox temporary access token β mapbox temporary access token credentials in mongodb connection string β credentials in mongodb connection string microsoft teams webhook β microsoft teams webhook netrc credentials β netrc credentials new relic license key β new relic license key new relic api service key β new relic api service key new relic admin api key β new relic admin api key new relic insights insert key β new relic insights insert key new relic insights query key β new relic insights query key new relic rest api key β new relic rest api key new relic pixie api key β new relic pixie api key new relic pixie deploy key β new relic pixie deploy key npm access token β npm access token (fine grained) nuget api key β nuget api key credentials in odbc connection string β credentials in odbc connection string okta api token β okta api token openai api key β openai api key particle io access token β particle io access token pem encoded private key β pem encoded private key phpmailer credentials β phpmailer credentials credentials in postgresql connection uri β credentials in postgresql connection uri postman api key β postman api key postmark api token β postmark api token credentials in psexec invocation β credentials in psexec invocation password hash md5crypt β password hash (md5crypt) password hash bcrypt β password hash (bcrypt) password hash sha256crypt β password hash (sha256crypt) password hash sha512crypt β password hash (sha512crypt) password hash cisco ios pbkdf2 with sha256 β password hash (cisco ios pbkdf2 with sha256) pypi upload token β pypi upload token react app username β react app username react app password β react app password rubygems api key β rubygems api key aws s3 bucket β aws s3 bucket salesforce access token β salesforce access token sauce token β sauce token segment public api token β segment public api token sendgrid api key β sendgrid api key shopify domain β shopify domain shopify app secret β shopify app secret shopify access token β shopify access token slack bot token β slack bot token slack webhook β slack webhook slack user token β slack user token slack app token β slack app token slack legacy bot token β slack legacy bot token sonarqube token β sonarqube token sourcegraph access token β sourcegraph access token square access token β square access token square oauth secret β square oauth secret stackhawk api key β stackhawk api key stripe api key β stripe api key stripe api test key β stripe api test key tavily api key β tavily api key teamcity api token β teamcity api token telegram bot token β telegram bot token thingsboard access token β thingsboard access token thingsboard provision device key β thingsboard provision device key thingsboard provision device secret β thingsboard provision device secret truenas api key websocket β truenas api key (websocket) truenas api key rest api β truenas api key (rest api) twilio api key β twilio api key twitter client id β twitter client id twitter secret key β twitter secret key credentials in connect viserver invocation β credentials in connect viserver invocation wireguard private key β wireguard private key wireguard preshared key β wireguard preshared key