Use inline trufflehog:ignore instead of exclude paths file

Inline comments are more targeted than excluding the entire file
from secret scanning. Remove the .trufflehog.yml exclude file and
the --exclude-paths flag from the workflow.

Signed-off-by: Bryan Frimin <bryan@getprobo.com>
This commit is contained in:
Bryan Frimin
2026-03-27 12:42:03 +01:00
committed by Sacha Al Himdani
parent bba7855678
commit 7dcc3d21ac
3 changed files with 5 additions and 6 deletions

View File

@@ -19,4 +19,4 @@ jobs:
submodules: recursive
- uses: "trufflesecurity/trufflehog@b78fbfd8eb982f4802e09a265fb2bc37b3040975" # main
with:
extra_args: "--results=verified,unknown --exclude-paths=.trufflehog.yml"
extra_args: "--results=verified,unknown"