|
1 | 1 | package com.box.sdk; |
2 | 2 |
|
| 3 | +import java.util.Arrays; |
| 4 | +import java.util.HashSet; |
| 5 | +import java.util.Set; |
3 | 6 | import okhttp3.Headers; |
| 7 | +import org.jetbrains.annotations.NotNull; |
4 | 8 |
|
5 | | -import java.util.Set; |
6 | | -import java.util.HashSet; |
7 | | -import java.util.Arrays; |
| 9 | +final class BoxSensitiveDataSanitizer { |
| 10 | + private static final Set<String> SENSITIVE_KEYS = new HashSet<>(Arrays.asList("authorization", "access_token", |
| 11 | + "refresh_token", "subject_token", "token", "client_id", "client_secret", "code", "shared_link", "download_url", |
| 12 | + "jwt_private_key", "jwt_private_key_passphrase", "password")); |
8 | 13 |
|
9 | | -class BoxSensitiveDataSanitizer { |
10 | | - private static final Set<String> sensitiveKeys = new HashSet<>(Arrays.asList( |
11 | | - "authorization", |
12 | | - "access_token", |
13 | | - "refresh_token", |
14 | | - "subject_token", |
15 | | - "token", |
16 | | - "client_id", |
17 | | - "client_secret", |
18 | | - "code", |
19 | | - "shared_link", |
20 | | - "download_url", |
21 | | - "jwt_private_key", |
22 | | - "jwt_private_key_passphrase", |
23 | | - "password" |
24 | | - )); |
| 14 | + private BoxSensitiveDataSanitizer() { |
| 15 | + } |
25 | 16 |
|
26 | | - public static Headers sanitizeHeaders(Headers originalHeaders) { |
27 | | - Headers.Builder sanitizedHeadersBuilder = originalHeaders.newBuilder(); |
| 17 | + @NotNull |
| 18 | + public static Headers sanitizeHeaders(Headers originalHeaders) { |
| 19 | + Headers.Builder sanitizedHeadersBuilder = originalHeaders.newBuilder(); |
28 | 20 |
|
29 | | - for (String originalHeaderName : originalHeaders.names()) { |
30 | | - if (isSensitiveKey(originalHeaderName)) { |
31 | | - sanitizedHeadersBuilder.set(originalHeaderName, "[REDACTED]"); |
32 | | - } else { |
33 | | - String headerValue = originalHeaders.get(originalHeaderName); |
34 | | - if(headerValue != null) { |
35 | | - sanitizedHeadersBuilder.set(originalHeaderName, headerValue); |
36 | | - } |
37 | | - } |
38 | | - } |
| 21 | + for (String originalHeaderName : originalHeaders.names()) { |
| 22 | + if (isSensitiveKey(originalHeaderName)) { |
| 23 | + sanitizedHeadersBuilder.set(originalHeaderName, "[REDACTED]"); |
| 24 | + } else { |
| 25 | + String headerValue = originalHeaders.get(originalHeaderName); |
| 26 | + if (headerValue != null) { |
| 27 | + sanitizedHeadersBuilder.set(originalHeaderName, headerValue); |
| 28 | + } |
| 29 | + } |
| 30 | + } |
39 | 31 |
|
40 | | - return sanitizedHeadersBuilder.build(); |
41 | | - } |
| 32 | + return sanitizedHeadersBuilder.build(); |
| 33 | + } |
42 | 34 |
|
43 | | - private static boolean isSensitiveKey(String key) { |
44 | | - return sensitiveKeys.contains(key.toLowerCase()); |
45 | | - } |
| 35 | + private static boolean isSensitiveKey(@NotNull String key) { |
| 36 | + return SENSITIVE_KEYS.contains(key.toLowerCase()); |
| 37 | + } |
46 | 38 | } |
0 commit comments