Revert "Use inline trufflehog:ignore instead of exclude paths file"
This reverts commit f10ecb8210b1176311d9372d1108b91ce8290fd4. Signed-off-by: Bryan Frimin <bryan@getprobo.com>
This commit is contained in:
committed by
Sacha Al Himdani
parent
7dcc3d21ac
commit
5237e57d27
2
.github/workflows/secrets.yaml
vendored
2
.github/workflows/secrets.yaml
vendored
@@ -19,4 +19,4 @@ jobs:
|
||||
submodules: recursive
|
||||
- uses: "trufflesecurity/trufflehog@b78fbfd8eb982f4802e09a265fb2bc37b3040975" # main
|
||||
with:
|
||||
extra_args: "--results=verified,unknown"
|
||||
extra_args: "--results=verified,unknown --exclude-paths=.trufflehog.yml"
|
||||
|
||||
1
.trufflehog.yml
Normal file
1
.trufflehog.yml
Normal file
@@ -0,0 +1 @@
|
||||
pkg/agent/guardrail/sensitive_data_test\.go
|
||||
@@ -82,12 +82,12 @@ func TestSensitiveDataGuardrail_Check(t *testing.T) {
|
||||
{"pem certificate", "-----BEGIN CERTIFICATE-----\nMIIE...", true},
|
||||
|
||||
// Connection strings
|
||||
{"postgres uri", "Connect to postgres://user:pass@host/db", true}, // trufflehog:ignore
|
||||
{"postgresql uri", "Connect to postgresql://user:pass@host/db", true}, // trufflehog:ignore
|
||||
{"mongodb uri", "Use mongodb://user:pass@host/db", true}, // trufflehog:ignore
|
||||
{"postgres uri", "Connect to postgres://user:pass@host/db", true},
|
||||
{"postgresql uri", "Connect to postgresql://user:pass@host/db", true},
|
||||
{"mongodb uri", "Use mongodb://user:pass@host/db", true},
|
||||
{"mysql uri", "Use mysql://user:pass@host/db", true},
|
||||
{"redis uri", "Cache at redis://localhost:6379", true},
|
||||
{"amqp uri", "Queue at amqp://guest:guest@host/vhost", true}, // trufflehog:ignore
|
||||
{"amqp uri", "Queue at amqp://guest:guest@host/vhost", true},
|
||||
|
||||
// Generic secret field names
|
||||
{"encryption_key", "The encryption_key is set in config", true},
|
||||
|
||||
Reference in New Issue
Block a user