Leakage of sensitive data to Bugsnag
Last updated
Rule ID: javascript_third_parties_bugsnag
Applicable Languages: Javascript
Weakness ID: CWE-201
Leaking sensitive data to third-party loggers like Bugsnag is a common cause of data leaks and can lead to data breaches.
Do ensure all sensitive data is removed when logging errors or events to Bugsnag
Do use unique identifiers from the database if you really need to identify users.
import { Bugsnag } from "@bugsnag/js"
var bugSession = Bugsnag.startSession()
bugSession.notify(user.uuid)To omit this rule during a scan, and to provide you with continuous 24/7 code-level scanning, you can employ our SAST TOOL
Last updated