-
#### Summarize the content issue
When integrating GitHub using the new GitHub App, our docs say the user should configure Read-Only to all org and repo data. Verily reported that the Repository Secre…
-
## Description
In the `secret-scan` package, we would like to have a function that would take in an object and then do the following:
- The object would be of type `Record`
- It would scan throug…
-
Hello,
We're facing issues with the [Using Trivy to scan your Git repo](https://github.com/aquasecurity/trivy-action?tab=readme-ov-file#using-trivy-to-scan-your-git-repo) setup, the action is worki…
uRhos updated
2 weeks ago
-
**Describe the bug**
Rules with uppercase keywords find no results when those rules are defined in a TOML that is extended.
When the TOML is consumed into the Config object, the keywords for eac…
-
I thought this would be easy but I was wrong. Consider the following Github action:
```yaml
name: Daily Pull and Vulnerability Scan
on:
schedule:
- cron: "0 0 * * *" # Runs daily at mi…
-
The tool should be able to find a Secret in Envs.
For Example, for images that are produced from such Dockerfile:
```
FROM docker.io/library/python:3.8
ENV PYTHONDONTWRITEBYTECODE=1
ENV PYTHONUN…
-
** Done with nothing. ¯\_(ツ)_/¯
PS E:\安全渗透\60-APP渗透\apk扫描\apkleaks-2.6.3> py apkleaks.py -f a5994f28cb0f488784b163209ec7f0de.apk -o .\1.txt
_ ____ _ ___ _
/ \ | _ \…
-
# Template Terraform to deploy to Cloud Infrastructure
# This template allows you to deploy your infrastructure using Terraform to supported cloud providers.
# The workflow allows running tests, secu…
-
* **I'm submitting a ...**
- [x] bug report
- [ ] feature request
* **What is the current behavior?**
I'm using detect-secrets 1.5.0, from a `repo_directory` initialised with git. Inside t…
-
# Production plan:
###### This issue relates to the deployment of the complete stack with os2ID(Authentik) and os2samtale(Zulip)
##### Proposal for items that needs to be discussed and agreed up…