Credential Access
High
- Category
- Privilege Escalation
- Content
For every capability used, record its name, availability, read-only status, scope/limits, and an evidence reference. A tool is not approved merely because it is present: reject capabilities that can publish, mutate, send, or access secrets unless the current task is strictly read-only and the mutating mode is not invoked.
- Confidence
- 21% confidence
- Finding
- Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.
