• bleistift2@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    4
    ·
    4 months ago

    You can’t detect all credentials reliably,

    Easy. You check in the password file first. Then you can check if the codebase contains any entry on the blacklist.

    Wait…

    • pfm@scribe.disroot.org
      link
      fedilink
      arrow-up
      4
      ·
      4 months ago

      You were so close! The right solution is of course training an AI model that detects credentials and rejects commits that contain them!