Openai Key

Detects Openai Key patterns.

Type
regex
Engine
universal
Confidence
medium
Confidence justification
Medium confidence: the modern sk-proj-/sk-svcacct-/sk-admin- prefixes (often carrying the T3BlbkFJ marker) are distinctive, while the legacy sk- + 48-char form is more generic; corroborative OpenAI keywords and exclusion rules keep false positives low.
Detection quality
Mixed
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Data categories
credentials, security
Scope
wide
Platform compatibility
Purview: Compatible, GCP DLP: Unsupported, Macie: Unsupported, Zscaler: Compatible, Palo Alto: Unsupported, Netskope: Unsupported

Pattern

(?<![A-Za-z0-9])sk-(?:proj|svcacct|admin)-[A-Za-z0-9_-]{20,}|(?<![A-Za-z0-9])sk-[A-Za-z0-9]{48}(?![A-Za-z0-9])

Corroborative evidence keywords

api key, api_key, apikey, access key, secret key, private key, auth token, authorization, access token, bearer, conn str, connection string, connectionstring, cookie, credential, database, host, JWT, oauth, passphrase (+33 more)

Proximity: 300 characters

Should match

Should not match

Known false positives

References

Collections