Skip to content

Security: redact query strings + WS payloads from logs#206

Open
its-DeFine wants to merge 1 commit intocloudflare:mainfrom
its-DeFine:codex/redact-secrets-in-logs-20260208
Open

Security: redact query strings + WS payloads from logs#206
its-DeFine wants to merge 1 commit intocloudflare:mainfrom
its-DeFine:codex/redact-secrets-in-logs-20260208

Conversation

@its-DeFine
Copy link

Redacts sensitive data from worker logs:

  • Never log URL query strings (often contain ?token=... / ?secret=...)
  • Stop logging WebSocket message payloads (may contain auth + user content)
  • CDP route: avoid logging request params

Motivation: prevent accidental credential leakage via logs.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant