dotnet / arcade-services

Arcade Engineering Services
MIT License
54 stars 72 forks source link

Add option to generate common CredScan suppression file for VMR sync #3698

Open akoeplinger opened 3 days ago

akoeplinger commented 3 days ago

Almost all of the entries in .gdnbaselines in the VMR are from CredScan and we already have suppression files in the individual repos so we can hydrate a common one, similar to what we do for CODEOWNERs.

Helps with https://github.com/dotnet/source-build/issues/4259

akoeplinger commented 2 days ago

This will conflict with @premun's https://github.com/dotnet/arcade-services/pull/3690 once it is reapplied.

akoeplinger commented 1 day ago

@oleksandr-didyk would you mind taking a look? or do you think we should wait until Premek is back?