aws-codedeploy-inline-appspec-content

An inline AppSpec document can contain hook commands or configuration values with embedded credentials.

awscritical service: aws:codedeploy emits ContainsCredential

Where it sits

locationGetDeployment.deploymentInfo.revision.appSpecContent.content
location kindtemplate_document
data kindssource_code_secret credential password api_key connection_string
emits edgeContainsCredential
serviceCodeDeploy (aws:codedeploy)

Collection recipe

access moderead_api
operationGetDeployment
response pathdeploymentInfo.revision.appSpecContent.content
encodingyaml
params{"deploymentId": "\u003cdeployment-id\u003e"}

Required permissions

codedeploy:GetDeployment

References

move · open · esc close