Skip to content

Conversation

@enncoded
Copy link

Got this error message when trying to set up diun with Gotify, with the auth token in plaintext, which can be insecure (CWE-117 / CWE-532).

Sat, 11 Oct 2025 12:00:04 PDT ERR Gotify notification failed error="Post \"http://gotify:9265/message?token=xxx\": dial tcp 172.20.0.3:9265: connect: connection refused" image=docker.io/searxng/searxng:latest

This PR adds sanitization for logged URLs/paths (based on common param names for secrets) while logging and adds tests.

@enncoded enncoded requested a review from crazy-max as a code owner October 14, 2025 05:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant