Blizzard / node-rdkafka

Node.js bindings for librdkafka
MIT License
2.1k stars 390 forks source link

Test certificates are shipped in npm package #1027

Open Chengxuan opened 1 year ago

Chengxuan commented 1 year ago

Environment Information

Steps to Reproduce

The following certificates from the librdkafka dependency are flagged as sensitive data during the security scan:

https://github.com/confluentinc/librdkafka/blob/master/tests/fixtures/ssl/client2.certificate.pem https://github.com/confluentinc/librdkafka/blob/master/tests/fixtures/ssl/client2.key

Were they included intentionally?

node-rdkafka Configuration Settings

Additional context