aws-amplify-branch-environment-variables

Branch-specific environment overrides are plaintext and may expose deployment credentials.

awscritical service: aws:amplify emits ContainsCredential

Where it sits

locationGetBranch.branch.environmentVariables.<value>
location kindenvironment_variable
data kindscredential password api_key access_key secret_key oauth_token connection_string
emits edgeContainsCredential
serviceAmplify (aws:amplify)

Collection recipe

access moderead_api
operationGetBranch
response pathbranch.environmentVariables.<value>
encodingmap
params{"appId": "\u003capp-id\u003e", "branchName": "\u003cbranch-name\u003e"}

Required permissions

amplify:GetBranch

References

move · open · esc close