Tag
secrets-exposure
Safeguard articles tagged "secrets-exposure" — guides, analysis, and best practices for software supply chain and application security.
3 articles
Software Supply Chain Security
tj-actions/changed-files GitHub Action compromise
How the tj-actions/changed-files GitHub Action compromise (CVE-2025-30066) leaked CI/CD secrets from 23,000+ repos, and how to prevent it.
Jul 3, 20266 min read
Incident Analysis
tj-actions/changed-files Compromise: What Happened
A March 2025 GitHub Action compromise rewrote every tagged version to leak secrets. Here is the timeline, attack chain, and what repos need to change.
Jan 14, 20267 min read
Security
spring-boot-starter-actuator: Securing Exposed Actuator Endpoints
spring-boot-starter-actuator gives you production-grade health and metrics endpoints, but a single misconfigured deployment can leak secrets and heap dumps to the internet.
Jul 22, 20255 min read
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.