Ssd 3
- Category
- Not specified by scanner
- Confidence
- 100% confidence
- Finding
This is a detailed playbook for locating, reading, validating, and operationalizing GitHub tokens from ~/.git-credentials, environment variables, git helper configuration, and GitHub CLI files. In context, the skill is nominally about safe git operations, so embedding a credential-harvesting workflow is more dangerous because it is unrelated to the core purpose and can be reused to impersonate the user or access remote resources under their account.
- Content
