diff --git a/src/yunohost/log.py b/src/yunohost/log.py index bf3535375..cbb850e44 100644 --- a/src/yunohost/log.py +++ b/src/yunohost/log.py @@ -315,7 +315,7 @@ class RedactingFormatter(Formatter): try: # This matches stuff like db_pwd=the_secret or admin_password=other_secret # (the secret part being at least 3 chars to avoid catching some lines like just "db_pwd=") - match = re.search(r'(pwd|pass|password|secret|key)=(\S{3,})$', record.strip()) + match = re.search(r'(pwd|pass|password|secret|key|token)=(\S{3,})$', record.strip()) if match and match.group(2) not in self.data_to_redact: self.data_to_redact.append(match.group(2)) except Exception as e: