Secret Scanning Patterns
Use these patterns in CI/CD pipelines, git hooks, or code review to detect accidentally committed secrets.
| Secret Type | Pattern |
|---|---|
| AWS Access Key | AKIA[0-9A-Z]{16} |
| GitHub Token | gh[pousr]_[A-Za-z0-9_]{36,} |
| Private Key | -----BEGIN .* PRIVATE KEY----- |
| JWT Token | eyJ[A-Za-z0-9_-]+\.eyJ[A-Za-z0-9_-]+\.[A-Za-z0-9_-]+ |
| Connection String | (postgres|mysql|mongodb)://[^\s]+ |
| Generic API Key | api[_-]?key['":\s]+['"]([\w\-]{16,64}) |
| Slack Token | xox[baprs]-[0-9A-Za-z\-]{10,} |