Atlassian Auth Key
Description
General
- Documentation: https://developer.atlassian.com/cloud/jira/platform/oauth-2-authorization-code-grants-3lo-for-apps/
- Summary: This detector aims to catch Atlassian auth keys, the OAuth 2.0 access tokens issued by auth.atlassian.com to access Atlassian cloud products such as Jira, Confluence or Bitbucket through their APIs.
Revoke the secret
The token is a short-lived OAuth 2.0 access token issued by auth.atlassian.com. It cannot be revoked individually: revoke the app's authorization from the Atlassian account connected apps page, or rotate the app credentials from the developer console.
Details for Atlassian Auth Key
-
Family: credentials
-
Category: collaboration_tool
-
Company: Atlassian
-
High recall: False
-
Validity check available: True
-
Analyzer available: False
-
Revoker available: False
-
On-premise instances exist: False
-
Only valid secrets raise an alert: False
-
Occurrences found for one million commits: very rare
-
Prefixed: False