Improvement

July 1, 20251 Minute Read

Secret scanning adds validity checks for Doppler and Defined Networking

Secret scanning is adding validity check support for additional token types.

Validity checks indicate if the leaked credentials are active and could still be exploited. If you’ve previously enabled validation checks for a given repository, GitHub will now automatically verify validity for alerts on supported token types. In addition to token types announced in our previous changelogs, you will now see validity checks for the following token types:

  • Doppler personal token (DOPPLER_PERSONAL_TOKEN)
  • Defined Networking Nebula API key (DEFINED_NETWORKING_NEBULA_API_KEY)

Subscribe to our developer newsletter

Discover tips, technical guides, and best practices in our biweekly newsletter just for devs.

By submitting, I agree to let GitHub and its affiliates use my information for personalized communications, targeted advertising, and campaign effectiveness. See the GitHub Privacy Statement for more details.

Secret scanning adds validity checks for Doppler and Defined Networking - GitHub Changelog