afterhours-shift-manager/src/roster-sync
Adam Moussa ae4e2740a8
fix(logging): remove taint-flagged values from 3CX and roster-sync logs
Resolves code-scanning alerts 12-15 (py/clear-text-logging-sensitive-data).
CodeQL taints the 3CX response dicts via the Secrets Manager-sourced
domain in the request URL, so entity IDs subscripted from those
responses (ivr_id, resource_id, queue_id) and the roster result dict
trip the query. None of the flagged values are secrets, but the log
lines are rewritten so the pattern cannot trip: entity IDs are dropped
in favor of the untainted destination DNs, and the roster summary logs
counts instead of the member-derived dict (which also keeps employee
names out of the logs).
2026-07-27 13:31:01 -04:00
..
app.py fix(logging): remove taint-flagged values from 3CX and roster-sync logs 2026-07-27 13:31:01 -04:00
requirements.txt chore: batch Dependabot boto3 bumps (#176, #177, #178, #179, #180, #181, #182) (#183) 2026-07-22 13:08:01 -04:00