# credential leak

Published articles for credential leak.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Open sourcing Octo STS

DevFeed: [Open sourcing Octo STS](<https://devfeed.tech/articles/open-sourcing-octo-sts-13197.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/open-sourcing-octo-sts>)

Published: 2024-05-02T00:00:00Z

Content type: release

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [octo sts](<https://devfeed.tech/topics/octo-sts.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Security](<https://devfeed.tech/topics/security.md>), [GitHub](<https://devfeed.tech/topics/github.md>), [Infrastructure as code](<https://devfeed.tech/topics/infrastructure-as-code.md>)

Tags: [announce](<https://devfeed.tech/tags/announce.md>), [credential-leak](<https://devfeed.tech/tags/credential-leak.md>), [github](<https://devfeed.tech/tags/github.md>), [github-credentials](<https://devfeed.tech/tags/github-credentials.md>), [github-vulnerability](<https://devfeed.tech/tags/github-vulnerability.md>), [octo-sts](<https://devfeed.tech/tags/octo-sts.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [security](<https://devfeed.tech/tags/security.md>), [security-best-practices](<https://devfeed.tech/tags/security-best-practices.md>), [security-token-service](<https://devfeed.tech/tags/security-token-service.md>), [source](<https://devfeed.tech/tags/source.md>)

### AI overview

Chainguard announces the open sourcing of Octo STS, a GitHub Security Token Service designed to exchange short-lived third-party tokens for short-lived first-party tokens. The repository includes its source code and the infrastructure as code used to deploy and monitor it, enabling teams to inspect, host, and manage their own instance.

### Source excerpt

Open Source Octo STS Released -- Chainguard's solution to eliminate long-lived GitHub credentials. Improve security, collaborate, get updates.