When API credentials are accidentally committed to public GitHub repositories, Gists and npm packages, Vercel now automatically revokes them to protect your account from unauthorized access. You'll receive notifications when exposed credentials are detected, and can review any discovered and in your dashboard. This detection is powered by and brings an extra layer of security to all Vercel and v0 users.tokensAPI keysGitHub secret scanning As part of this change, we’ve also updated our token and API key formats in order to help visually identify them. Each credential type includes now includes a prefix: We encourage you to periodically review your and , to rotate any long-lived API credentials, and to revoke API credentials that are no longer in use.tokensAPI keys Read more for vcpVercel personal access tokens for vciVercel integration tokens for vcaVercel app access tokens for vcrVercel app refresh tokens for vckVercel API keys
No discussion yet. Be the first to share your thoughts!