-
Notifications
You must be signed in to change notification settings - Fork 0
fix(standards): rename GITLEAKS_SHA256→GITLEAKS_CHECKSUM, add .gitleaks.toml template #167
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
don-petry
wants to merge
71
commits into
main
Choose a base branch
from
fix/gitleaks-standard-checksum-and-toml
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Changes from all commits
Commits
Show all changes
71 commits
Select commit
Hold shift + click to select a range
5ef1ac4
fix(standards): update gitleaks job to use GITLEAKS_CHECKSUM and requ…
don-petry 1de307b
fix(standards): add .gitleaks.toml requirement and GITLEAKS_CHECKSUM …
don-petry cc8aab4
fix(standards): add canonical .gitleaks.toml template with _bmad/ all…
don-petry c01d02c
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6d1bcf0
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] a7ad4d1
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6189112
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] dd3d3e2
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 30d307f
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6f16e92
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] f452163
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6911a5a
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 460f094
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] c257114
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] f8f144d
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 5600ca3
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] d5314e4
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 7d7e91c
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 24a3228
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 045a340
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 2202939
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] fe9c2e9
ci: trigger CI with clean check-suite preferences
don-petry 3c2b293
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 0733019
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] a7199af
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] f924c95
test: trigger re-review to validate Claude bot-comment workflow
don-petry bc94343
fix: address Copilot and CodeRabbit review comments
github-actions[bot] 48fc9d8
fix(push-protection): broaden has_binary detection to handle multilin…
github-actions[bot] a0ac04b
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 15bf053
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] d4c0650
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 1b003e7
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 5ad9c47
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 3193f1b
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] e964c05
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 7a94ca9
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] b59e4b3
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 7f72c26
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 1582d5a
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] f003275
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 231c231
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 0c508d8
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 809cddb
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6f2fe96
fix(push-protection): collapse newlines before binary-pattern grep
github-actions[bot] 566fb6f
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6522af6
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 7e43a75
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 597552a
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] bbab1eb
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] c14172d
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] a885e26
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] a3cddb9
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] d5843e4
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 70fe562
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6dba2bf
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 57dc131
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6846755
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 18fa6df
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 5b67906
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6906679
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] eca8823
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 6c70a66
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] eae9187
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
github-actions[bot] 694f21d
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry 7d5a618
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry ff3d418
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry 296e385
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry 884a65c
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry 2250f28
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry e728702
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry fc6bc47
Merge branch 'main' into fix/gitleaks-standard-checksum-and-toml
don-petry File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1,10 @@ | ||
| title = "gitleaks config" | ||
|
|
||
| # Add repo-specific allowlists below. | ||
| # Common false-positive paths: | ||
| # '''_bmad/''' — BMAD knowledge/config files (not application secrets) | ||
| [allowlist] | ||
| description = "Allowlisted paths" | ||
| paths = [ | ||
| '''_bmad/''', | ||
| ] |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This new
.gitleaks.tomlrequirement callout is good, but the surrounding section still describes the setup as “gitleaks action” and shows anenv:snippet includingGITHUB_TOKEN. Sincepush-protection.mdnow documents a manual binary install, consider updating this section to match (remove the action-specific wording/token, and show whereGITLEAKS_LICENSEshould be set for org repos) to avoid adopters copy/pasting conflicting instructions.