feat(security-review): confluence-doc OAuth 2.0 client-credentials (service account) #40

Merged
amoussa1229 merged 1 commit from feat/confluence-doc-oauth into main 2026-06-22 23:45:42 +00:00
amoussa1229 commented 2026-06-22 23:45:08 +00:00 (Migrated from github.com)

Adds OAuth 2.0 client-credentials (2LO) auth to the confluence-doc checker so an Atlassian org service account (no classic API token) can authenticate. Auto-resolves cloudId from /_edge/tenant_info; Basic auth retained as fallback; read+recommend-only (D7) unchanged; canary 3/3; shellcheck clean. Secret never logged; failures skip the API (no false alarm).

Adds OAuth 2.0 client-credentials (2LO) auth to the confluence-doc checker so an Atlassian org service account (no classic API token) can authenticate. Auto-resolves cloudId from /_edge/tenant_info; Basic auth retained as fallback; read+recommend-only (D7) unchanged; canary 3/3; shellcheck clean. Secret never logged; failures skip the API (no false alarm).
This repo is archived. You cannot comment on pull requests.
No description provided.