Commit 66c55cb
authored
fix: redact flax msgpack evidence (#1409)
* fix: redact flax msgpack evidence
* fix: normalize Flax evidence key paths
* fix: close flax evidence redaction gaps
Redact capability tokens embedded in URL paths and standalone secret-shaped evidence. Stringify non-scalar Flax metadata keys before redaction so extension keys serialize safely.
* fix: broaden GitHub token evidence redaction
* fix: redact remaining flax evidence fields
* fix: redact encoded evidence tokens
* fix: redact URL-safe OpenAI project keys
* fix: harden Flax evidence redaction
* fix: redact Hugging Face access tokens
* fix: harden Flax binary evidence scanning
* fix: redact encoded credential evidence
* fix: bound encoded evidence redaction1 parent f147ebc commit 66c55cb
7 files changed
Lines changed: 1109 additions & 74 deletions
File tree
- modelaudit
- detectors
- scanners
- tests
- detectors
- scanners
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
68 | 68 | | |
69 | 69 | | |
70 | 70 | | |
| 71 | + | |
71 | 72 | | |
72 | 73 | | |
73 | 74 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
21 | 21 | | |
22 | 22 | | |
23 | 23 | | |
24 | | - | |
| 24 | + | |
25 | 25 | | |
| 26 | + | |
26 | 27 | | |
27 | 28 | | |
28 | 29 | | |
| |||
334 | 335 | | |
335 | 336 | | |
336 | 337 | | |
| 338 | + | |
| 339 | + | |
| 340 | + | |
| 341 | + | |
| 342 | + | |
| 343 | + | |
| 344 | + | |
| 345 | + | |
337 | 346 | | |
338 | 347 | | |
339 | 348 | | |
| |||
445 | 454 | | |
446 | 455 | | |
447 | 456 | | |
448 | | - | |
| 457 | + | |
449 | 458 | | |
450 | | - | |
| 459 | + | |
451 | 460 | | |
452 | 461 | | |
453 | 462 | | |
| |||
0 commit comments