/plushcap/analysis/twilio/introducing-twilio-deadshot

Deadshot: Keep Sensitive Data Out of Code

What's this blog post about?

Twilio's Product Security team created Deadshot, an automated service that monitors GitHub repositories in real-time for sensitive data, such as credentials or SQL statements. The service uses regular expressions to scan pull request diffs and flags issues for a manual review. Deadshot is designed to be a deploy-and-forget solution, requiring minimal maintenance, and can be integrated with Slack channels and Jira tickets. It has proven to be effective in catching sensitive data at Twilio and is now being released as open source, allowing others to benefit from its functionality.

Company
Twilio

Date published
May 18, 2021

Author(s)
Laxman Eppalagudem

Word count
495

Language
English

Hacker News points
2


By Matt Makai. 2021-2024.