directory.go 1.7 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879
  1. package cmd
  2. import (
  3. "time"
  4. "github.com/spf13/cobra"
  5. "github.com/zricethezav/gitleaks/v8/logging"
  6. "github.com/zricethezav/gitleaks/v8/report"
  7. "github.com/zricethezav/gitleaks/v8/sources"
  8. )
  9. func init() {
  10. rootCmd.AddCommand(directoryCmd)
  11. directoryCmd.Flags().Bool("follow-symlinks", false, "scan files that are symlinks to other files")
  12. }
  13. var directoryCmd = &cobra.Command{
  14. Use: "dir [flags] [path]",
  15. Aliases: []string{"file", "directory"},
  16. Short: "scan directories or files for secrets",
  17. Run: runDirectory,
  18. }
  19. func runDirectory(cmd *cobra.Command, args []string) {
  20. // grab source
  21. source := "."
  22. if len(args) == 1 {
  23. source = args[0]
  24. if source == "" {
  25. source = "."
  26. }
  27. }
  28. initConfig(source)
  29. initDiagnostics()
  30. var (
  31. findings []report.Finding
  32. err error
  33. )
  34. // setup config (aka, the thing that defines rules)
  35. cfg := Config(cmd)
  36. // start timer
  37. start := time.Now()
  38. detector := Detector(cmd, cfg, source)
  39. // set follow symlinks flag
  40. if detector.FollowSymlinks, err = cmd.Flags().GetBool("follow-symlinks"); err != nil {
  41. logging.Fatal().Err(err).Msg("")
  42. }
  43. // set exit code
  44. exitCode, err := cmd.Flags().GetInt("exit-code")
  45. if err != nil {
  46. logging.Fatal().Err(err).Msg("could not get exit code")
  47. }
  48. var paths <-chan sources.ScanTarget
  49. paths, err = sources.DirectoryTargets(
  50. source,
  51. detector.Sema,
  52. detector.FollowSymlinks,
  53. detector.Config.Allowlists,
  54. )
  55. if err != nil {
  56. logging.Fatal().Err(err)
  57. }
  58. findings, err = detector.DetectFiles(paths)
  59. if err != nil {
  60. // don't exit on error, just log it
  61. logging.Error().Err(err).Msg("failed scan directory")
  62. }
  63. findingSummaryAndExit(detector, findings, exitCode, start, err)
  64. }