Skip to content

Commit 8944e42

Browse files
chore: add secrets scanning
1 parent 870f2f4 commit 8944e42

File tree

3 files changed

+58
-0
lines changed

3 files changed

+58
-0
lines changed

.circleci/config.yml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -10,6 +10,7 @@ only_maintainers: &only_maintainers
1010
# Forked pull requests have CIRCLE_BRANCH set to pull/XXX
1111
ignore: /pull\/[0-9]+/
1212
orbs:
13+
prodsec: snyk/[email protected]
1314
go: circleci/[email protected]
1415
snyk: snyk/[email protected]
1516
gh: circleci/[email protected]
@@ -270,6 +271,11 @@ workflows:
270271
- snyk-bot-slack
271272
pullrequest:
272273
jobs:
274+
- prodsec/secrets-scan:
275+
name: Scan repository for secrets
276+
context:
277+
- snyk-bot-slack
278+
channel: group-infrastructure-as-code-alerts
273279
- lint:
274280
<<: *only_branches
275281
- test:

.gitleaksignore

Lines changed: 47 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,47 @@
1+
52853a39d07a208e3405fdafc5fd112f92822694:pkg/test/google/3.78.0/google_compute_ssl_certificate/expected.json:private-key:13
2+
52853a39d07a208e3405fdafc5fd112f92822694:pkg/test/google/3.78.0/google_compute_ssl_certificate/input.json:private-key:13
3+
6fb907ef58f45775e2eb8568a0a9b127feab3e5c:pkg/resource/google/testdata/acc/google_compute_ssl_certificate/host.key:private-key:1
4+
c13321dfcf21fc6452dfb6b49107ce13946ba62c:pkg/iac/terraform/state/test/google_compute_ssl_certificate/results.golden.json:private-key:13
5+
c13321dfcf21fc6452dfb6b49107ce13946ba62c:pkg/iac/terraform/state/test/google_compute_ssl_certificate/terraform.tfstate:private-key:24
6+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_group/expected.json:aws-access-token:10
7+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_group/input.json:aws-access-token:10
8+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:3
9+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:6
10+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:12
11+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:15
12+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:21
13+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:24
14+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:30
15+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/expected.json:aws-access-token:33
16+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_role/input.json:aws-access-token:20
17+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_role/input.json:aws-access-token:41
18+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_role/input.json:aws-access-token:62
19+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:3
20+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:7
21+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:17
22+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:21
23+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:31
24+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:35
25+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:45
26+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_access_key/input.json:aws-access-token:49
27+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_role/expected.json:aws-access-token:17
28+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_role/expected.json:aws-access-token:35
29+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_role/expected.json:aws-access-token:53
30+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_user/expected.json:aws-access-token:13
31+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_user/expected.json:aws-access-token:27
32+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_user/expected.json:aws-access-token:41
33+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_user/input.json:aws-access-token:15
34+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_user/input.json:aws-access-token:31
35+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_iam_user/input.json:aws-access-token:47
36+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_alias/expected.json:generic-api-key:9
37+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_alias/expected.json:generic-api-key:19
38+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_alias/input.json:generic-api-key:11
39+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_alias/input.json:generic-api-key:23
40+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_alias/input.json:generic-api-key:35
41+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_alias/expected.json:generic-api-key:29
42+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_key/expected.json:generic-api-key:12
43+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_key/expected.json:generic-api-key:27
44+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_key/expected.json:generic-api-key:45
45+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_key/input.json:generic-api-key:13
46+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_key/input.json:generic-api-key:30
47+
e7750bc00cc11555a248a5a4a782ea5bb4b55d06:pkg/test/aws/3.19.0/aws_kms_key/input.json:generic-api-key:49

.pre-commit-config.yaml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
1+
repos:
2+
- repo: https://github.com/gitleaks/gitleaks
3+
rev: v8.16.2
4+
hooks:
5+
- id: gitleaks

0 commit comments

Comments
 (0)