azure-blueprints-deployment-stack-parameters

Deployment Stack parameter values may persist plaintext deployment credentials.

azurecritical service: azure:blueprints emits ContainsSecret

Where it sits

locationMicrosoft.Resources/deploymentStacks.properties.parameters.*.value
location kindiac_template
data kindscredential password api_key access_key secret_key oauth_token connection_string
emits edgeContainsSecret
serviceBlueprints/Deployment Stacks (azure:blueprints)

Collection recipe

access moderead_api
operationDeployment Stacks - Get At Resource Group
response pathproperties.parameters
encodingjson
params{"resource_id": "\u003cazure-resource-id\u003e"}

Required permissions

Microsoft.Resources/deploymentStacks/read

References

move · open · esc close