twine icon indicating copy to clipboard operation
twine copied to clipboard

Printed URLs for Twine uploads should sanitize secrets with regard to alternate repositories that require credentials.

Open ascheel opened this issue 9 months ago • 0 comments

Is there an existing issue for this?

  • [X] I have searched the existing issues (open and closed), and could not find an existing issue

What keywords did you use to search existing issues?

password sanitize sanitizing censor url

Please describe why your using this option

Just creating an issue to match the Pull Request that I've already created. It seemed appropriate. The below PR sanitizes the printed output, clearing any sensitive data from the repository_url so it doesn't get output to screen/logs when using custom repositories.

https://github.com/pypa/twine/pull/1104

Anything else you'd like to mention?

No response

ascheel avatar May 09 '24 17:05 ascheel