azure-databricks-notebook-source

Notebook source and embedded outputs can contain credentials, tokens, and sensitive data.

azurecritical service: azure:databricks emits ContainsSecret

Where it sits

locationDatabricks Workspace export content
location kindnotebook_content
data kindscredential password api_key access_key secret_key oauth_token connection_string source_code_secret sensitive_data pii customer_data
emits edgeContainsSecret
serviceAzure Databricks (azure:databricks)

Collection recipe

access modedata_plane
operationGET /api/2.0/workspace/export
response pathcontent
encodingbase64
params{"format": "SOURCE", "path": "\u003cworkspace-path\u003e"}

Required permissions

CAN_READ

References

move · open · esc close