id: hashicorp-api-token info: name: Hashicorp API Token author: DhiyaneshDK severity: info reference: - https://github.com/returntocorp/semgrep-rules/blob/develop/generic/secrets/gitleaks/hashicorp-tf-api-token.yaml - https://github.com/returntocorp/semgrep-rules/blob/develop/generic/secrets/gitleaks/hashicorp-tf-api-token.go metadata: verified: true tags: hashicorp,file,keys file: - extensions: - all extractors: - type: regex part: body regex: - (?i)[a-z0-9]{14}\.atlasv1\.[a-z0-9\-_=]{60,70} # digest: 490a004630440220077946f13881a3f72dcf81af66d6441c54bcfa9ebf55bb2a9b9b8e16ca48f82c022071b09b7aa278782ba81b70d8da7eed2b6876da0e551fc1a23533e1d67f4cce02:922c64590222798bb761d5b6d8e72950