Credential Access
High
- Category
- Privilege Escalation
- Content
3. channel or source label such as `telegram upload` or `manual upload`, 4. user-provided source note. Avoid storing private local filesystem paths, temporary download URLs, access tokens, or account-specific transport details in long-term records unless the user explicitly asks for that behavior. Before archiving, watch for low-value or sensitive images: - unreadable, heavily cropped, or extremely low-resolution screenshots,
- Confidence
- 70% confidence
- Finding
- Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.
