streaak / keyhacks

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
4.84k stars 1.01k forks source link

Use the access-token endpoint for buildkite #140

Closed clonsdale-canva closed 1 year ago

clonsdale-canva commented 1 year ago

Its preferable to use the access-token endpoint for buildkite as the /user endpoint will fail if the token does not have the read_user scope.

https://buildkite.com/docs/apis/rest-api/access-token