Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The script prints the first 200 lines of ~/.ssh/config directly to stdout, which can expose sensitive host aliases, internal hostnames, usernames, key paths, proxy/jump-host settings, and other connection metadata. In an agent or automated support context, that output may be logged, forwarded, or shown to a third party, creating an avoidable disclosure risk even though it does not reveal private key material itself.
