Explorar o código

ignore k8s apiVersion in generic-api-key pattern (#760)

Andrzej Amghar %!s(int64=4) %!d(string=hai) anos
pai
achega
c3b799ec63
Modificáronse 1 ficheiros con 1 adicións e 1 borrados
  1. 1 1
      config/gitleaks.toml

+ 1 - 1
config/gitleaks.toml

@@ -535,7 +535,7 @@ secretGroup = 3
 [[rules]]
 id = "generic-api-key"
 description = "Generic API Key"
-regex = '''(?i)((key|api|token|secret|password)[a-z0-9_ .\-,]{0,25})(=|>|:=|\|\|:|<=|=>|:).{0,5}['\"]([0-9a-zA-Z\-_=]{8,64})['\"]'''
+regex = '''(?i)((key|api[^Version]|token|secret|password)[a-z0-9_ .\-,]{0,25})(=|>|:=|\|\|:|<=|=>|:).{0,5}['\"]([0-9a-zA-Z\-_=]{8,64})['\"]'''
 entropy = 3.7
 secretGroup = 4