fix(auth): remove unsafe SAMLResponse WARN logging - BED-9639 - #3260
cami-specter wants to merge 1 commit into
Conversation
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Repository YAML (base), Organization UI (inherited) Review profile: CHILL Plan: Essentials Run ID: 📒 Files selected for processing (1)
💤 Files with no reviewable changes (1)
Included review availability: Your plan provides up to 8 included reviews per hour; 7 remain after this review. 📝 WalkthroughWalkthroughThe invalid SAML response logging path no longer logs the raw response value. Issuer and private error details remain logged. ChangesSAML logging
Estimated code review effort: 1 (Trivial) | ~2 minutes Merge Risk: ⚪ Minimal · up to Invalid SAML responses no longer expose their raw payload in warning logs, reducing sensitive-data disclosure risk. No concrete merge-blocking risk remains. 🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
Full details: Docstring CoverageExplanation No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. Docstring coverage is scoped to functions touched by this diff. Analyzed 0 functions across 0 files. ✨ Finishing Touches📝 Generate docstrings
🧪 Generate unit tests (beta)
Comment |
fixes: BED-9639
Description
Remove sensitive logging. For more info, see https://specterops.atlassian.net/browse/BED-9639
Motivation and Context
Fixes:
https://specterops.atlassian.net/browse/BED-9639
Why is this change required? What problem does it solve?
How Has This Been Tested?
Screenshots (optional):
Types of changes
Checklist:
Summary by CodeRabbit