Product Releases and Updates
Exposed Secrets in Site Properties in AI Mentor Studio (O11)

Exposed Secrets in Site Properties in AI Mentor Studio (O11)

16 March 2026

Storing API keys and external service credentials in site properties is a common practice, but leaving them unencrypted creates a significant security vulnerability. Relying on manual reviews to catch these oversights is risky and often leads to overlooked vulnerabilities in O11 apps.

AI Mentor Studio now automatically identifies these risks by matching site property values against typical formats for sensitive credentials and API keys.

By flagging exposed secrets early, teams can prevent accidental data exposure, enforce encryption best practices as well as ensure their applications remain compliant with modern security frameworks.

O11
Artificial Intelligence
Security