Leakage of sensitive data to OpenTelemetry
Overview
Rule ID:
javascript_third_parties_open_telemetry
Applicable Languages: Javascript
Weakness ID: CWE-201
Description
Exposing sensitive data to third-party loggers such as OpenTelemetry is a frequent cause of data leaks and can result in data breaches.
Remediation Guidelines
Do ensure all sensitive data is removed when logging errors or events to OpenTelemetry
References
Configuration
To omit this rule during a scan, and to provide you with continuous 24/7 code-level scanning, you can employ our SAST TOOL
Last updated