aws-sagemaker-processing-job-environment

Processing-job environment variables are plaintext and may expose data-source credentials.

awscritical service: aws:sagemaker emits ContainsCredential

Where it sits

locationDescribeProcessingJob.Environment
location kindenvironment_variable
data kindscredential password api_key access_key secret_key connection_string
emits edgeContainsCredential
serviceSageMaker (aws:sagemaker)

Collection recipe

access moderead_api
operationDescribeProcessingJob
response pathEnvironment
encodingmap
params{"ProcessingJobName": "\u003cjob-name\u003e"}

Required permissions

sagemaker:DescribeProcessingJob

References

move · open · esc close