Developers often believe that once a file is deleted on GitHub, it is gone forever, but a bug bounty hunter discovered hidden secrets in deleted files.
Curiosity led the hunter to explore bug bounty programs and search for API keys, credentials, and tokens in deleted files, revealing hidden risks in repository history.
When a file is deleted from a GitHub repository, it is not completely erased due to Git's version control system.
The discovery emphasizes the importance of understanding the risks associated with deleted files and the potential for sensitive information to be exposed.