4
0
Ben-grmbl 4e303d0284 fix(easypost): only detect tokens of correct length (#1628) 1 жил өмнө
..
1password.go 93acc6e82a feat(rules): add 1password token (#1583) 1 жил өмнө
adafruit.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
adobe.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
age.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
airtable.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
algolia.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
alibaba.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
asana.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
atlassian.go 4181ad647a Add new jira api token pattern (#1601) 1 жил өмнө
authress.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
aws.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
azure.go 8fb39ba8dc feat(azure): detect Azure AD client secrets (#1199) 1 жил өмнө
beamer.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
bitbucket.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
bittrex.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
clojars.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
cloudflare.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
codecov.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
cohere.go 1a2f656278 feat: add cohere rule (#1549) 1 жил өмнө
coinbase.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
config.tmpl 2db25f1367 feat(config): ignore swagger-ui assets (#1604) 1 жил өмнө
confluent.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
contentful.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
curl.go 202106a190 Add human readable description for curl rules (#1625) 1 жил өмнө
databricks.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
datadog.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
definednetworking.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
digitalocean.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
discord.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
doppler.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
droneci.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
dropbox.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
duffel.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
dynatrace.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
easypost.go 4e303d0284 fix(easypost): only detect tokens of correct length (#1628) 1 жил өмнө
etsy.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
facebook.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
fastly.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
finicity.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
finnhub.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
flickr.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
flutterwave.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
flyio.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
frameio.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
freshbooks.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
gcp.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
generic.go 48ea14bd47 feat: update global & generic allowlist (#1618) 1 жил өмнө
github.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
gitlab.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
gitter.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
gocardless.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
grafana.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
harness.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
hashicorp.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
hashicorp_vault.go 81f0002845 fix(vault-service-token): ensure that TPS contains digits (#1614) 1 жил өмнө
heroku.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
hubspot.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
huggingface.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
infracost.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
intercom.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
intra42.go 455ae0aab7 More rule fixes (#1586) 1 жил өмнө
jfrog.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
jwt.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
kraken.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
kubernetes.go 455ae0aab7 More rule fixes (#1586) 1 жил өмнө
kucoin.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
launchdarkly.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
linear.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
linkedin.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
lob.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
mailchimp.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
mailgun.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
mapbox.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
mattermost.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
messagebird.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
netlify.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
newrelic.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
npm.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
nuget.go aabe381539 Define multiple allowlists per rule (#1496) 1 жил өмнө
nytimes.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
octopusdeploy.go 43fae355e6 feat(rules): create Octopus Deploy api key (#1602) 1 жил өмнө
okta.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
openai.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
openshift.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
plaid.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
planetscale.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
postman.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
prefect.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
privateai.go 00bb82153e feat: add PrivateAI rule (#1548) 1 жил өмнө
privatekey.go bf8a49fc29 Make private key check less greedy and include fifth dash (#1440) 1 жил өмнө
pulumi.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
pypi.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
rapidapi.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
readme.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
rubygems.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
scalingo.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
sendbird.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
sendgrid.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
sendinblue.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
sentry.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
shippo.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
shopify.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
sidekiq.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
slack.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
snyk.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
square.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
squarespace.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
stopwords.go e97695b852 feat(generic-api-key): exclude keywords (#1587) 1 жил өмнө
stripe.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
sumologic.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
teams.go 455ae0aab7 More rule fixes (#1586) 1 жил өмнө
telegram.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
travisci.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
trello.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
twilio.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
twitch.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
twitter.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
typeform.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
yandex.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө
zendesk.go c11adc91ad Generate comprehensive secret samples (#1484) 1 жил өмнө

readme.go

package rules

import (
"github.com/zricethezav/gitleaks/v8/cmd/generate/config/utils"
"github.com/zricethezav/gitleaks/v8/cmd/generate/secrets"
"github.com/zricethezav/gitleaks/v8/config"
)

func ReadMe() *config.Rule {
// define rule
r := config.Rule{
RuleID: "readme-api-token",
Description: "Detected a Readme API token, risking unauthorized documentation management and content exposure.",
Regex: utils.GenerateUniqueTokenRegex(`rdme_[a-z0-9]{70}`, false),
Entropy: 2,
Keywords: []string{
"rdme_",
},
}

// validate
tps := utils.GenerateSampleSecrets("api-token", "rdme_"+secrets.NewSecret(utils.AlphaNumeric("70")))

fps := []string{
`const API_KEY = 'rdme_XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX';`,
}
return utils.Validate(r, tps, fps)
}