瀏覽代碼

ignore k8s apiVersion in generic-api-key pattern (#760)

Andrzej Amghar 4 年之前
父節點
當前提交
c3b799ec63
共有 1 個文件被更改,包括 1 次插入1 次删除
  1. 1 1
      config/gitleaks.toml

+ 1 - 1
config/gitleaks.toml

@@ -535,7 +535,7 @@ secretGroup = 3
 [[rules]]
 id = "generic-api-key"
 description = "Generic API Key"
-regex = '''(?i)((key|api|token|secret|password)[a-z0-9_ .\-,]{0,25})(=|>|:=|\|\|:|<=|=>|:).{0,5}['\"]([0-9a-zA-Z\-_=]{8,64})['\"]'''
+regex = '''(?i)((key|api[^Version]|token|secret|password)[a-z0-9_ .\-,]{0,25})(=|>|:=|\|\|:|<=|=>|:).{0,5}['\"]([0-9a-zA-Z\-_=]{8,64})['\"]'''
 entropy = 3.7
 secretGroup = 4