Hacker News new | ask | show | jobs
by Szpadel 526 days ago
wouldn't capturing only env names without values be ideal middle ground?

look we had access to your Aws tokens, we could take over your account but we didn't steal actual token, we just got proof that we could access it

1 comments

Yes I agree names only would have been a better approach here.