Updates to API Config#3
Conversation
Removed reference to 'LLM Security Best Practices' from README.
Updated README to clarify the purpose of the repository and added references for security resources.
Removed fun fact and use cases sections, updated disclaimer.
| # Database credentials | ||
| DB_HOST = "prod-db.internal.example.com" | ||
| DB_USER = "app_service" | ||
| DB_PASSWORD = "Pr0d_S3cure!P@ssw0rd_2025_xK9m" |
There was a problem hiding this comment.
❗Cycode: Secret of type: 'Generic Password' was found.
Severity: Medium
Confidence Score: 99%
SHA: cf03e5240e
Description
A generic secret or password is an authentication token used to access a computer or application and is assigned to a password variable.
Cycode Remediation Guideline
❗ How to revoke
- Change the password or secret in the system or application where it is used.
- Update any services, applications, or scripts that use the old password or secret with the new one.
- Invalidate any sessions or tokens that were authenticated using the old password or secret.
Tell us how you wish to proceed using one of the following commands:
| Tag | Short Description |
|---|---|
| #cycode_secret_false_positive <reason> | Applies to this secret value for all repos in your organization |
| #cycode_secret_ignore_here <reason> | Applies to this request only |
| #cycode_secret_ignore_everywhere <reason> | Applies to this secret value for all repos in your organization |
| #cycode_secret_revoked | Applies to this secret value for all repos in your organization |
There was a problem hiding this comment.
#cycode_secret_ignore_here Risk accpetance link to approval,
There was a problem hiding this comment.
👍 Cycode has finished processing your request. Please review your status checks.
Tell us how you wish to proceed using one of the following commands:
| Tag | Short Description |
|---|---|
| #cycode_unignore | Revert all ignore actions |
There was a problem hiding this comment.
#cycode_secret_false_positive
There was a problem hiding this comment.
👎 Cycode cannot perform further actions in this thread.
Updates to config/api_config.py