kingfisher/crates/kingfisher-rules/data/rules/scraperapi.yml
Mick Grove e518fb30f2 v1.81.0
2026-02-10 19:24:19 -08:00

35 lines
977 B
YAML

rules:
- name: ScraperAPI Key
id: kingfisher.scraperapi.1
pattern: |
(?xi)
\b(?:scraper(?:\s|[_-])?api|scraperapi)
(?:.|[\n\r]){0,32}?
(?:key|token|api[_-]?key)
(?:.|[\n\r]){0,16}?
([a-z0-9]{32})
\b
pattern_requirements:
min_digits: 2
min_lowercase: 5
min_entropy: 3.5
confidence: medium
examples:
- 'SCRAPERAPI_KEY=a1b2c3d4e5f6g7h8i9j0k1l2m3n4o5p6'
- 'scraper_api_token: "9f8e7d6c5b4a3029182736455463728a"'
references:
- https://www.scraperapi.com/documentation/
validation:
type: Http
content:
request:
method: GET
url: "https://api.scraperapi.com?api_key={{ TOKEN }}&url=http://httpbin.org/ip"
response_matcher:
- report_response: true
- type: StatusMatch
status: [200]
- type: JsonValid
- type: WordMatch
words:
- '"origin"'