From c89d9d1e03b7c09a62f9b7fac03352fe8c28a409 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Fri, 17 Nov 2023 19:51:13 +0100 Subject: [PATCH] chore(deps): update trufflesecurity/trufflehog action to v3.63.0 (#17) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit [![Mend Renovate logo banner](https://app.renovatebot.com/images/banner.svg)](https://renovatebot.com) This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [trufflesecurity/trufflehog](https://togithub.com/trufflesecurity/trufflehog) | action | minor | `v3.62.1` -> `v3.63.0` | --- ### Release Notes
trufflesecurity/trufflehog (trufflesecurity/trufflehog) ### [`v3.63.0`](https://togithub.com/trufflesecurity/trufflehog/releases/tag/v3.63.0) [Compare Source](https://togithub.com/trufflesecurity/trufflehog/compare/v3.62.1...v3.63.0) #### Changelog - [`39a603d`](https://togithub.com/trufflesecurity/trufflehog/commit/39a603d2) \[chore] Add JSON tags to job metrics ([#​2114](https://togithub.com/trufflesecurity/trufflehog/issues/2114)) - [`d334b30`](https://togithub.com/trufflesecurity/trufflehog/commit/d334b307) move all Git setup into Init method ([#​2105](https://togithub.com/trufflesecurity/trufflehog/issues/2105)) - [`fd33198`](https://togithub.com/trufflesecurity/trufflehog/commit/fd33198a) add proto fields for Git ([#​2104](https://togithub.com/trufflesecurity/trufflehog/issues/2104)) - [`b2042e4`](https://togithub.com/trufflesecurity/trufflehog/commit/b2042e4e) extract AWS account number from ID without verification ([#​2091](https://togithub.com/trufflesecurity/trufflehog/issues/2091)) - [`737d6b7`](https://togithub.com/trufflesecurity/trufflehog/commit/737d6b76) Adding Sumo Logic how to rotate ([#​2103](https://togithub.com/trufflesecurity/trufflehog/issues/2103)) - [`76a0468`](https://togithub.com/trufflesecurity/trufflehog/commit/76a04685) update protos so we can use the git source for CI ([#​2102](https://togithub.com/trufflesecurity/trufflehog/issues/2102)) - [`d066a3f`](https://togithub.com/trufflesecurity/trufflehog/commit/d066a3fa) Detector-Competition-Feat: Added Replicate API token detector ([#​2021](https://togithub.com/trufflesecurity/trufflehog/issues/2021)) - [`bcde785`](https://togithub.com/trufflesecurity/trufflehog/commit/bcde7856) Detector-Competition-Feat: Added Ngrok API token detector ([#​2024](https://togithub.com/trufflesecurity/trufflehog/issues/2024)) - [`1b93c05`](https://togithub.com/trufflesecurity/trufflehog/commit/1b93c054) Competition-Detector-New:added v2 version for fullstory ([#​2067](https://togithub.com/trufflesecurity/trufflehog/issues/2067)) - [`8e3f6e9`](https://togithub.com/trufflesecurity/trufflehog/commit/8e3f6e98) Add support for user:pass@host to postgres JDBC detector ([#​2089](https://togithub.com/trufflesecurity/trufflehog/issues/2089)) - [`1094190`](https://togithub.com/trufflesecurity/trufflehog/commit/1094190f) Detector-Competition-Feat: Add Overloop detector ([#​2080](https://togithub.com/trufflesecurity/trufflehog/issues/2080)) - [`da59b72`](https://togithub.com/trufflesecurity/trufflehog/commit/da59b727) Detector-Competition-Feat: Added Request.Finance API token detector ([#​2020](https://togithub.com/trufflesecurity/trufflehog/issues/2020)) - [`703e158`](https://togithub.com/trufflesecurity/trufflehog/commit/703e1586) Detector-Competition-New : created grafana service account detector ([#​1960](https://togithub.com/trufflesecurity/trufflehog/issues/1960)) - [`b2d541e`](https://togithub.com/trufflesecurity/trufflehog/commit/b2d541e0) Detector-Competition-Fix: fixed zulipchat detector ([#​1990](https://togithub.com/trufflesecurity/trufflehog/issues/1990)) - [`6259b17`](https://togithub.com/trufflesecurity/trufflehog/commit/6259b179) Grafana ([#​2096](https://togithub.com/trufflesecurity/trufflehog/issues/2096)) - [`aabfec4`](https://togithub.com/trufflesecurity/trufflehog/commit/aabfec4c) Competition-Detector-New: added eventbrite detector ([#​2072](https://togithub.com/trufflesecurity/trufflehog/issues/2072)) - [`1371512`](https://togithub.com/trufflesecurity/trufflehog/commit/1371512f) logz.io detector ([#​2076](https://togithub.com/trufflesecurity/trufflehog/issues/2076)) - [`06b5fc2`](https://togithub.com/trufflesecurity/trufflehog/commit/06b5fc25) Coda Detector ([#​2075](https://togithub.com/trufflesecurity/trufflehog/issues/2075)) - [`50a3a82`](https://togithub.com/trufflesecurity/trufflehog/commit/50a3a82c) fix ([#​2094](https://togithub.com/trufflesecurity/trufflehog/issues/2094)) - [`de8889b`](https://togithub.com/trufflesecurity/trufflehog/commit/de8889b4) Detector-Competition-Fix: Fix LiveAgent Detector & Verifier ([#​2001](https://togithub.com/trufflesecurity/trufflehog/issues/2001)) - [`0b90265`](https://togithub.com/trufflesecurity/trufflehog/commit/0b902658) pulling short lived AWS keys into their own thing, fixes [#​1224](https://togithub.com/trufflesecurity/trufflehog/issues/1224) ([#​2088](https://togithub.com/trufflesecurity/trufflehog/issues/2088)) - [`7a15633`](https://togithub.com/trufflesecurity/trufflehog/commit/7a156330) Support multiple detectors per match ([#​2065](https://togithub.com/trufflesecurity/trufflehog/issues/2065)) - [`600903f`](https://togithub.com/trufflesecurity/trufflehog/commit/600903f3) \[chore] Speedup IsKnownFalsePositive using sets ([#​2090](https://togithub.com/trufflesecurity/trufflehog/issues/2090)) - [`3b9ecaa`](https://togithub.com/trufflesecurity/trufflehog/commit/3b9ecaa7) Detector-Competition-Fix: Fix ScraperSite (deprecated) ([#​2074](https://togithub.com/trufflesecurity/trufflehog/issues/2074)) - [`41e9cc5`](https://togithub.com/trufflesecurity/trufflehog/commit/41e9cc59) Detector-Competition-Fix: Fix PassBase (acquired, deprecated) ([#​2079](https://togithub.com/trufflesecurity/trufflehog/issues/2079)) - [`b95ed3b`](https://togithub.com/trufflesecurity/trufflehog/commit/b95ed3b4) Detector-Competition-New - Created Grafana Cloud API Key detector ([#​1959](https://togithub.com/trufflesecurity/trufflehog/issues/1959)) - [`9e52e3e`](https://togithub.com/trufflesecurity/trufflehog/commit/9e52e3e8) Detector-Competition-Fix: Fix/Deprecate Prospect.io ([#​2081](https://togithub.com/trufflesecurity/trufflehog/issues/2081)) - [`a1d74cd`](https://togithub.com/trufflesecurity/trufflehog/commit/a1d74cd8) added resource type mapping to extraData in AWS ([#​2087](https://togithub.com/trufflesecurity/trufflehog/issues/2087)) - [`b5cc6c1`](https://togithub.com/trufflesecurity/trufflehog/commit/b5cc6c19) Detector-Competition-Fix: Fix FakeJSON (deprecated) ([#​2073](https://togithub.com/trufflesecurity/trufflehog/issues/2073)) - [`ab89689`](https://togithub.com/trufflesecurity/trufflehog/commit/ab896890) fixed helpscout detector regex and verifier ([#​2056](https://togithub.com/trufflesecurity/trufflehog/issues/2056)) - [`965a274`](https://togithub.com/trufflesecurity/trufflehog/commit/965a274d) Detector-Competition-Fix: fixed regex for databricks domain and fixed tests ([#​1965](https://togithub.com/trufflesecurity/trufflehog/issues/1965)) - [`b6469f2`](https://togithub.com/trufflesecurity/trufflehog/commit/b6469f23) modified regex ([#​2033](https://togithub.com/trufflesecurity/trufflehog/issues/2033)) - [`4106ce7`](https://togithub.com/trufflesecurity/trufflehog/commit/4106ce7b) Detector-Competition-Feat: Adding Azure Container Registry Password Detector ([#​1958](https://togithub.com/trufflesecurity/trufflehog/issues/1958)) - [`07f6c84`](https://togithub.com/trufflesecurity/trufflehog/commit/07f6c84a) Detector-Competition-Fix: Fix SentimentInvestor (deprecated) ([#​2078](https://togithub.com/trufflesecurity/trufflehog/issues/2078)) - [`9d6bc8c`](https://togithub.com/trufflesecurity/trufflehog/commit/9d6bc8c5) Refactor git source to support scanning units ([#​2083](https://togithub.com/trufflesecurity/trufflehog/issues/2083)) - [`52600a8`](https://togithub.com/trufflesecurity/trufflehog/commit/52600a89) \[chore] Replace chunks channel with ChunkReporter in git based sources ([#​2082](https://togithub.com/trufflesecurity/trufflehog/issues/2082)) - [`d55cb56`](https://togithub.com/trufflesecurity/trufflehog/commit/d55cb56d) update comment ([#​2084](https://togithub.com/trufflesecurity/trufflehog/issues/2084)) - [`7197e4b`](https://togithub.com/trufflesecurity/trufflehog/commit/7197e4b3) use rawv2 for pubnubpublish ([#​2062](https://togithub.com/trufflesecurity/trufflehog/issues/2062)) - [`95e0090`](https://togithub.com/trufflesecurity/trufflehog/commit/95e0090b) \[chore] - correctly handle input shorter than 512 bytes ([#​2077](https://togithub.com/trufflesecurity/trufflehog/issues/2077)) - [`89b6315`](https://togithub.com/trufflesecurity/trufflehog/commit/89b6315e) \[chore] - add binutils dep to dockerfile ([#​2061](https://togithub.com/trufflesecurity/trufflehog/issues/2061)) - [`74a56de`](https://togithub.com/trufflesecurity/trufflehog/commit/74a56de8) update braintreepayments detector to tri-state verification ([#​1834](https://togithub.com/trufflesecurity/trufflehog/issues/1834)) - [`8bac2b1`](https://togithub.com/trufflesecurity/trufflehog/commit/8bac2b15) Detector-Competition-Feat: Adding Azure Batch keys ([#​1956](https://togithub.com/trufflesecurity/trufflehog/issues/1956)) - [`499cb64`](https://togithub.com/trufflesecurity/trufflehog/commit/499cb645) Detector-Competition-Fix: Fix redis to now support SSL, and look for azure redis connection strings ([#​1957](https://togithub.com/trufflesecurity/trufflehog/issues/1957)) - [`a4fd17c`](https://togithub.com/trufflesecurity/trufflehog/commit/a4fd17c9) Detector-Competition-Fix: Fix AppFollow Detection & Verification ([#​1933](https://togithub.com/trufflesecurity/trufflehog/issues/1933))
--- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate](https://www.mend.io/free-developer-tools/renovate/). View repository job log [here](https://developer.mend.io/github/matter-labs/vault-auth-tee). Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> --- .github/workflows/secrets_scanner.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/secrets_scanner.yaml b/.github/workflows/secrets_scanner.yaml index 5cc1c21..3e33f8f 100644 --- a/.github/workflows/secrets_scanner.yaml +++ b/.github/workflows/secrets_scanner.yaml @@ -9,7 +9,7 @@ jobs: with: fetch-depth: 0 - name: TruffleHog OSS - uses: trufflesecurity/trufflehog@a9b056de0a2d1cc78da55c3594b194bf237663ef # v3.62.1 + uses: trufflesecurity/trufflehog@39a603d2dc5d8c011e8ad54bffb9e12fb18fe2b4 # v3.63.0 with: path: ./ base: ${{ github.event.repository.default_branch }}