Splunk Dev

Hide sensetive data during input creation

mstoro
New Member

Hi, I've built the add-on using Add-on Builder which gathers some data from user including an API key (type o f the field is password so it replaces API key with asterisks on the input creation page).
During the creation of an input I can see that the API key is not encrypted an passed to new_input request as a plain text in the payload body. It only happens if the API key is valid.

Is there any way to remove or hide the API key there?


Screenshot 2023-12-06 at 13.06.37.png

Labels (4)
0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

@mstoro - I believe this should not be encrypted in the browser. It will be encrypted on the fly if you are using Splunk UI on HTTPS. 

0 Karma
Get Updates on the Splunk Community!

Prove Your Splunk Prowess at .conf25—No Prereqs Required!

Your Next Big Security Credential: No Prerequisites Needed We know you’ve got the skills, and now, earning the ...

Splunk Observability Cloud's AI Assistant in Action Series: Observability as Code

This is the sixth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Answers Content Calendar, July Edition I

Hello Community! Welcome to another month of Community Content Calendar series! For the month of July, we will ...