• tyler@programming.dev
    link
    fedilink
    arrow-up
    7
    ·
    5 months ago

    You joke, but GitHub advanced security does this and more. On top of the AI component, they check the hash of all things that look like an api key and then also check them against their integrated vendors to see if they’re non-expired. I don’t know how well it works, but they claim like a .1% false positive rate or something like that.