Skip to content

JS Client logs sensitive credentials to stdout/stderr #1239

@dmmulroy

Description

@dmmulroy

Bug report

Hi, I was working with supabases' js client attempting to get storage upload working and I incorrectly configured the client. This resulted in my credentials being logged to stdout - the error message clearly indicates that it is knowledgable of the credentials and logs them out anyways. I was also streaming on twitch at the time and exposed my creds and had to roll them. I don't the think client should log sensitive creds to stdout/stderr.

image

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't workingstale

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions