We built a Sourcegraph token validator to ensure no one is putting Sourcegraph tokens in sourcecode
The risk severity determination is interesting! If the token of the current user has a site admin permission, the risk is higher.
We built a Sourcegraph token validator to ensure no one is putting Sourcegraph tokens in sourcecode