Back to all

hardcoded-secrets-anti-pattern

by igbuend

30Feb 6, 2026Visit Source
Security anti-pattern for hardcoded credentials and secrets (CWE-798). Use when generating or reviewing code that handles API keys, passwords, database credentials, encryption keys, or any sensitive configuration. Detects embedded secrets and recommends environment variables or secret managers.