Fleet Shield F
Insecure Defaults Detection
Initial release of insecure-defaults. - Detects fail-open insecure defaults including hardcoded secrets, weak authentication, and permissive security configurations in production-reachable code. - Helps with audits, code reviews, and configuration management by focusing on environment variable handling and insecure defaults. - Clearly distinguishes between fail-open (critical) and fail-secure (safe) patterns. - Provides search guidance and verification workflow, including example patterns and report template. - Includes a thorough checklist of common insecure defaults and guidance on when findings are relevant.
Category:Development
Security Score:0.0/10
Live Demo
Initial release of insecure-defaults.
•Detects fail-open insecure defaults including hardcoded secrets, weak authentication, and permissive security configurations in production-reachable code.
•Helps with audits, code reviews, and configuration management by focusing on environment variable handling and insecure defaults.
•Clearly distinguishes between fail-open (critical) and fail-secure (safe) patterns.
•Provides search guidance and verification workflow, including example patterns and report template.
•Includes a thorough checklist of common insecure defaults and guidance on when findings are relevant.
Tags
auditsecuritytrailofbits