PublicisSapient / enable-a11y

MIT License
11 stars 5 forks source link

News API Credentials in Repo #108

Open AbsentSemicolon opened 1 month ago

AbsentSemicolon commented 1 month ago

In the /services/getHeadlines.php functionality the API Credentials have been committed to the repository. This can present a security issue as anyone could grab the API key and use it.

Could put this in an environment variable to be brought in when needed.