logoalt Hacker News

sunnybeetrootyesterday at 9:46 PM1 replyview on HN

Credentials end up existing in prod because the person used Mochito and didn’t override the function for providing credentials :’c


Replies

senbrowyesterday at 10:26 PM

Credentials should only be provided at the application root, which is going to be a different root for a test harness.

Mockito shouldn't change whether or not this is possible; the code shouldn't have the prod creds (or any external resource references) hard coded in the compiled bytecode.

show 1 reply