@@ -14,12 +14,16 @@ edges
14
14
| main.go:80:16:80:21 | "key6" : string | main.go:80:9:80:22 | type conversion : string |
15
15
| main.go:89:10:89:23 | type conversion : string | main.go:91:66:91:69 | key2 |
16
16
| main.go:89:17:89:22 | "key7" : string | main.go:89:10:89:23 | type conversion : string |
17
- | main.go:97:9:97:22 | type conversion : string | main.go:103 :30:103 :32 | key |
17
+ | main.go:97:9:97:22 | type conversion : string | main.go:102 :30:102 :32 | key |
18
18
| main.go:97:16:97:21 | "key8" : string | main.go:97:9:97:22 | type conversion : string |
19
- | main.go:107:15:107:28 | type conversion : string | main.go:108:16:108:24 | sharedKey |
20
- | main.go:107:22:107:27 | "key9" : string | main.go:107:15:107:28 | type conversion : string |
21
- | main.go:111:23:111:37 | type conversion : string | main.go:114:16:114:30 | sharedKeyglobal |
22
- | main.go:111:30:111:36 | "key10" : string | main.go:111:23:111:37 | type conversion : string |
19
+ | main.go:106:15:106:28 | type conversion : string | main.go:107:16:107:24 | sharedKey |
20
+ | main.go:106:22:106:27 | "key9" : string | main.go:106:15:106:28 | type conversion : string |
21
+ | main.go:110:23:110:37 | type conversion : string | main.go:113:16:113:30 | sharedKeyglobal |
22
+ | main.go:110:30:110:36 | "key10" : string | main.go:110:23:110:37 | type conversion : string |
23
+ | sanitizer.go:17:9:17:21 | type conversion : string | sanitizer.go:18:44:18:46 | key |
24
+ | sanitizer.go:17:16:17:20 | `key` : string | sanitizer.go:17:9:17:21 | type conversion : string |
25
+ | sanitizer.go:80:10:80:14 | "asd" : string | sanitizer.go:99:2:99:24 | ... := ...[0] : string |
26
+ | sanitizer.go:99:2:99:24 | ... := ...[0] : string | sanitizer.go:104:44:104:47 | key4 |
23
27
nodes
24
28
| HardcodedKeysBad.go:11:18:11:38 | type conversion : string | semmle.label | type conversion : string |
25
29
| HardcodedKeysBad.go:11:25:11:37 | "AllYourBase" : string | semmle.label | "AllYourBase" : string |
@@ -46,13 +50,19 @@ nodes
46
50
| main.go:91:66:91:69 | key2 | semmle.label | key2 |
47
51
| main.go:97:9:97:22 | type conversion : string | semmle.label | type conversion : string |
48
52
| main.go:97:16:97:21 | "key8" : string | semmle.label | "key8" : string |
49
- | main.go:103:30:103:32 | key | semmle.label | key |
50
- | main.go:107:15:107:28 | type conversion : string | semmle.label | type conversion : string |
51
- | main.go:107:22:107:27 | "key9" : string | semmle.label | "key9" : string |
52
- | main.go:108:16:108:24 | sharedKey | semmle.label | sharedKey |
53
- | main.go:111:23:111:37 | type conversion : string | semmle.label | type conversion : string |
54
- | main.go:111:30:111:36 | "key10" : string | semmle.label | "key10" : string |
55
- | main.go:114:16:114:30 | sharedKeyglobal | semmle.label | sharedKeyglobal |
53
+ | main.go:102:30:102:32 | key | semmle.label | key |
54
+ | main.go:106:15:106:28 | type conversion : string | semmle.label | type conversion : string |
55
+ | main.go:106:22:106:27 | "key9" : string | semmle.label | "key9" : string |
56
+ | main.go:107:16:107:24 | sharedKey | semmle.label | sharedKey |
57
+ | main.go:110:23:110:37 | type conversion : string | semmle.label | type conversion : string |
58
+ | main.go:110:30:110:36 | "key10" : string | semmle.label | "key10" : string |
59
+ | main.go:113:16:113:30 | sharedKeyglobal | semmle.label | sharedKeyglobal |
60
+ | sanitizer.go:17:9:17:21 | type conversion : string | semmle.label | type conversion : string |
61
+ | sanitizer.go:17:16:17:20 | `key` : string | semmle.label | `key` : string |
62
+ | sanitizer.go:18:44:18:46 | key | semmle.label | key |
63
+ | sanitizer.go:80:10:80:14 | "asd" : string | semmle.label | "asd" : string |
64
+ | sanitizer.go:99:2:99:24 | ... := ...[0] : string | semmle.label | ... := ...[0] : string |
65
+ | sanitizer.go:104:44:104:47 | key4 | semmle.label | key4 |
56
66
subpaths
57
67
#select
58
68
| HardcodedKeysBad.go:19:28:19:39 | mySigningKey | HardcodedKeysBad.go:11:25:11:37 | "AllYourBase" : string | HardcodedKeysBad.go:19:28:19:39 | mySigningKey | $@ is used to sign a JWT token. | HardcodedKeysBad.go:11:25:11:37 | "AllYourBase" | Hardcoded String |
@@ -63,6 +73,8 @@ subpaths
63
73
| main.go:74:15:74:18 | key2 | main.go:69:17:69:22 | "key5" : string | main.go:74:15:74:18 | key2 | $@ is used to sign a JWT token. | main.go:69:17:69:22 | "key5" | Hardcoded String |
64
74
| main.go:84:41:84:43 | key | main.go:80:16:80:21 | "key6" : string | main.go:84:41:84:43 | key | $@ is used to sign a JWT token. | main.go:80:16:80:21 | "key6" | Hardcoded String |
65
75
| main.go:91:66:91:69 | key2 | main.go:89:17:89:22 | "key7" : string | main.go:91:66:91:69 | key2 | $@ is used to sign a JWT token. | main.go:89:17:89:22 | "key7" | Hardcoded String |
66
- | main.go:103:30:103:32 | key | main.go:97:16:97:21 | "key8" : string | main.go:103:30:103:32 | key | $@ is used to sign a JWT token. | main.go:97:16:97:21 | "key8" | Hardcoded String |
67
- | main.go:108:16:108:24 | sharedKey | main.go:107:22:107:27 | "key9" : string | main.go:108:16:108:24 | sharedKey | $@ is used to sign a JWT token. | main.go:107:22:107:27 | "key9" | Hardcoded String |
68
- | main.go:114:16:114:30 | sharedKeyglobal | main.go:111:30:111:36 | "key10" : string | main.go:114:16:114:30 | sharedKeyglobal | $@ is used to sign a JWT token. | main.go:111:30:111:36 | "key10" | Hardcoded String |
76
+ | main.go:102:30:102:32 | key | main.go:97:16:97:21 | "key8" : string | main.go:102:30:102:32 | key | $@ is used to sign a JWT token. | main.go:97:16:97:21 | "key8" | Hardcoded String |
77
+ | main.go:107:16:107:24 | sharedKey | main.go:106:22:106:27 | "key9" : string | main.go:107:16:107:24 | sharedKey | $@ is used to sign a JWT token. | main.go:106:22:106:27 | "key9" | Hardcoded String |
78
+ | main.go:113:16:113:30 | sharedKeyglobal | main.go:110:30:110:36 | "key10" : string | main.go:113:16:113:30 | sharedKeyglobal | $@ is used to sign a JWT token. | main.go:110:30:110:36 | "key10" | Hardcoded String |
79
+ | sanitizer.go:18:44:18:46 | key | sanitizer.go:17:16:17:20 | `key` : string | sanitizer.go:18:44:18:46 | key | $@ is used to sign a JWT token. | sanitizer.go:17:16:17:20 | `key` | Hardcoded String |
80
+ | sanitizer.go:104:44:104:47 | key4 | sanitizer.go:80:10:80:14 | "asd" : string | sanitizer.go:104:44:104:47 | key4 | $@ is used to sign a JWT token. | sanitizer.go:80:10:80:14 | "asd" | Hardcoded String |
0 commit comments