Dev Reveals Sanitizer Bypass Bug Leaking Sensitive Data for 13 Releases

The author of opentel-mcp disclosed a privacy leak that persisted across 13 releases: a line following the sanitization call in OpenTelemetry's recordException bypassed the fingerprint masking, sending emails, IPs, and URLs unsanitized.

2026-08-31 ~ 2026-08-31 · 2 related posts