Skip to main content

πŸ’Ό [CodeBuild.2] CodeBuild project environment variables should not contain clear text credentials

  • Contextual name: πŸ’Ό [CodeBuild.2] CodeBuild project environment variables should not contain clear text credentials

  • ID: /frameworks/aws-fsbp-v1.0.0/codebuild/02

  • Located in: πŸ’Ό CodeBuild

Description​

Authentication credentials AWS_ACCESS_KEY_ID and AWS_SECRET_ACCESS_KEY should never be stored in clear text, as this could lead to unintended data exposure and unauthorized access.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό IA-5(7) Authenticator Management _ No Embedded Unencrypted Static Authenticators
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SA-3 System Development Life Cycle3
πŸ’Ό PCI DSS v3.2.1 β†’ πŸ’Ό 8.2.1 Using strong cryptography, render all authentication credentials unreadable during transmission and storage on all system components.
πŸ’Ό PCI DSS v4.0.1 β†’ πŸ’Ό 8.3.2 Strong cryptography is used to render all authentication factors unreadable during transmission and storage on all system components.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags