Skip to content

Merge pull request #162 from tinyland-inc/fix/repo-health-cleanup #57

Merge pull request #162 from tinyland-inc/fix/repo-health-cleanup

Merge pull request #162 from tinyland-inc/fix/repo-health-cleanup #57

Workflow file for this run

name: Secret Detection
on:
push:
branches: ["*"]
pull_request:
branches: [main]
permissions:
contents: read
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
jobs:
trufflehog:
name: TruffleHog Secret Scan
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
with:
fetch-depth: 0
- name: TruffleHog scan
uses: trufflesecurity/trufflehog@586f66d7886cd0b037c7c245d4a6e34ef357ab10 # v3.94.1
with:
extra_args: --only-verified
gitleaks:
name: Gitleaks Secret Scan
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
with:
fetch-depth: 0
- name: Install gitleaks
run: |
GITLEAKS_VERSION=8.21.2
curl -sSfL "https://github.com/gitleaks/gitleaks/releases/download/v${GITLEAKS_VERSION}/gitleaks_${GITLEAKS_VERSION}_linux_x64.tar.gz" \
| tar xz -C /usr/local/bin gitleaks
- name: Run gitleaks
run: gitleaks detect --source . --config .gitleaks.toml --verbose --exit-code 1