mirror of
https://github.com/matter-labs/vault-auth-tee.git
synced 2025-07-21 07:43:57 +02:00
![renovate[bot]](/assets/img/avatar_default.png)
[](https://renovatebot.com) This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [trufflesecurity/trufflehog](https://togithub.com/trufflesecurity/trufflehog) | action | patch | `v3.63.4` -> `v3.63.5` | --- ### Release Notes <details> <summary>trufflesecurity/trufflehog (trufflesecurity/trufflehog)</summary> ### [`v3.63.5`](https://togithub.com/trufflesecurity/trufflehog/releases/tag/v3.63.5) [Compare Source](https://togithub.com/trufflesecurity/trufflehog/compare/v3.63.4...v3.63.5) #### What's Changed - \[chore] Prevent panic when ChunkError has a nil Unit by [@​mcastorina](https://togithub.com/mcastorina) in [https://github.com/trufflesecurity/trufflehog/pull/2227](https://togithub.com/trufflesecurity/trufflehog/pull/2227) - \[feat] - Make skipping binaries configurable by [@​ahrav](https://togithub.com/ahrav) in [https://github.com/trufflesecurity/trufflehog/pull/2226](https://togithub.com/trufflesecurity/trufflehog/pull/2226) - \[chore] Add skip_binaries field to AzureRepos proto message by [@​mcastorina](https://togithub.com/mcastorina) in [https://github.com/trufflesecurity/trufflehog/pull/2232](https://togithub.com/trufflesecurity/trufflehog/pull/2232) - Don't run detector tests on forks by [@​rgmz](https://togithub.com/rgmz) in [https://github.com/trufflesecurity/trufflehog/pull/2234](https://togithub.com/trufflesecurity/trufflehog/pull/2234) - Update Freshworks verification to check for valid JSON response by [@​rgmz](https://togithub.com/rgmz) in [https://github.com/trufflesecurity/trufflehog/pull/2212](https://togithub.com/trufflesecurity/trufflehog/pull/2212) - Enhance HuggingFace extra data by [@​rgmz](https://togithub.com/rgmz) in [https://github.com/trufflesecurity/trufflehog/pull/2222](https://togithub.com/trufflesecurity/trufflehog/pull/2222) - Convert Shortcut detector to tri-state verification by [@​rgmz](https://togithub.com/rgmz) in [https://github.com/trufflesecurity/trufflehog/pull/2211](https://togithub.com/trufflesecurity/trufflehog/pull/2211) - add secretID to chunk by [@​ahrav](https://togithub.com/ahrav) in [https://github.com/trufflesecurity/trufflehog/pull/2242](https://togithub.com/trufflesecurity/trufflehog/pull/2242) - fix(deps): update module golang.org/x/crypto to v0.17.0 \[security] by [@​renovate](https://togithub.com/renovate) in [https://github.com/trufflesecurity/trufflehog/pull/2243](https://togithub.com/trufflesecurity/trufflehog/pull/2243) **Full Changelog**: https://github.com/trufflesecurity/trufflehog/compare/v3.63.4...v3.63.5 </details> --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate](https://www.mend.io/free-developer-tools/renovate/). View repository job log [here](https://developer.mend.io/github/matter-labs/vault-auth-tee). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNy45My4xIiwidXBkYXRlZEluVmVyIjoiMzcuOTMuMSIsInRhcmdldEJyYW5jaCI6Im1haW4ifQ==--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
18 lines
531 B
YAML
18 lines
531 B
YAML
name: Leaked Secrets Scan
|
|
on: [pull_request]
|
|
jobs:
|
|
TruffleHog:
|
|
runs-on: ubuntu-latest
|
|
steps:
|
|
- name: Checkout code
|
|
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4
|
|
with:
|
|
fetch-depth: 0
|
|
- name: TruffleHog OSS
|
|
uses: trufflesecurity/trufflehog@300016a338b37b9a9ede7925195b5a5368db4c84 # v3.63.5
|
|
with:
|
|
path: ./
|
|
base: ${{ github.event.repository.default_branch }}
|
|
head: HEAD
|
|
extra_args: --debug --only-verified
|
|
|