Commit 6197251
fix(live_view_hook): Scrub sensitive params in breadcrumbs
LiveView event params, mount params, and handle_params params come from
client-side input over WebSocket and may contain passwords, credit card
numbers, or other sensitive data. They were previously stored verbatim
in Sentry breadcrumbs, leaking to the Sentry project on any subsequent
event.
Apply Sentry.Scrubber.scrub_map/1 to the params at all three breadcrumb
sites (on_mount, handle_event, handle_params) so that values for the
default sensitive keys ('password', 'passwd', 'secret') and credit card
patterns are redacted before being added to breadcrumbs.
Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>1 parent bea1d00 commit 6197251
2 files changed
Lines changed: 34 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
66 | 66 | | |
67 | 67 | | |
68 | 68 | | |
69 | | - | |
| 69 | + | |
70 | 70 | | |
71 | 71 | | |
72 | 72 | | |
| |||
105 | 105 | | |
106 | 106 | | |
107 | 107 | | |
108 | | - | |
| 108 | + | |
109 | 109 | | |
110 | 110 | | |
111 | 111 | | |
| |||
127 | 127 | | |
128 | 128 | | |
129 | 129 | | |
130 | | - | |
| 130 | + | |
131 | 131 | | |
132 | 132 | | |
133 | 133 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
18 | 18 | | |
19 | 19 | | |
20 | 20 | | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
21 | 25 | | |
22 | 26 | | |
23 | 27 | | |
| |||
164 | 168 | | |
165 | 169 | | |
166 | 170 | | |
| 171 | + | |
| 172 | + | |
| 173 | + | |
| 174 | + | |
| 175 | + | |
| 176 | + | |
| 177 | + | |
| 178 | + | |
| 179 | + | |
| 180 | + | |
| 181 | + | |
| 182 | + | |
| 183 | + | |
| 184 | + | |
| 185 | + | |
| 186 | + | |
| 187 | + | |
| 188 | + | |
| 189 | + | |
| 190 | + | |
| 191 | + | |
| 192 | + | |
| 193 | + | |
| 194 | + | |
| 195 | + | |
| 196 | + | |
| 197 | + | |
167 | 198 | | |
168 | 199 | | |
169 | 200 | | |
| |||
0 commit comments