fedora-infra / pagure-exporter

Simple exporter tool that helps migrate repository files, data assets and issue tickets from projects on Pagure to GitLab
GNU General Public License v3.0
6 stars 6 forks source link

Add `.gitleaks.toml` to ignore some GitLab runner tokens #83

Closed gridhead closed 11 months ago

gridhead commented 11 months ago

@nirik and I were separately reached out to separately by the Red Hat Security team regarding this. The GitLab runner tokens come as a part of the HTTP API response from GitLab and hence, can be considered harmless. Thanks to @ryanlerch's example of .gitleaks.toml file in the Tiny Stage repository that was helpful to create something similar for this repository.