id: google-oauth-prefixed info: name: Google OAuth Client Secret (prefixed) author: DhiyaneshDK severity: info reference: - https://github.com/praetorian-inc/noseyparker/blob/main/data/default/rules/google.yml metadata: verified: true max-request: 1 tags: google,token,exposure http: - method: GET path: - "{{BaseURL}}" extractors: - type: regex part: body regex: - '(GOCSPX-[a-zA-Z0-9_-]{28})' # digest: 4a0a0047304502210096c1b5435e3f287b67eb4166f8bb3784143d5f5eb33714d5c81cd3472b96773902201b6e9da414651c76ddf5aaae6ef2b111819bebc5d384589d981a84115ac17781:922c64590222798bb761d5b6d8e72950