Insecure Defaults Detection
Fleet Shield F

Insecure Defaults Detection

Initial release of insecure-defaults. - Detects fail-open insecure defaults including hardcoded secrets, weak authentication, and permissive security configurations in production-reachable code. - Helps with audits, code reviews, and configuration management by focusing on environment variable handling and insecure defaults. - Clearly distinguishes between fail-open (critical) and fail-secure (safe) patterns. - Provides search guidance and verification workflow, including example patterns and report template. - Includes a thorough checklist of common insecure defaults and guidance on when findings are relevant.

Category:Development
Security Score:0.0/10

Live Demo

Initial release of insecure-defaults.

Detects fail-open insecure defaults including hardcoded secrets, weak authentication, and permissive security configurations in production-reachable code.
Helps with audits, code reviews, and configuration management by focusing on environment variable handling and insecure defaults.
Clearly distinguishes between fail-open (critical) and fail-secure (safe) patterns.
Provides search guidance and verification workflow, including example patterns and report template.
Includes a thorough checklist of common insecure defaults and guidance on when findings are relevant.

Tags

auditsecuritytrailofbits
Free

Available for installation

3 tags