Skip to content
This repository has been archived by the owner on Aug 13, 2024. It is now read-only.

Commit

Permalink
GitHub Terraform: Create/Update .github/workflows/gitleaks_pr.yaml
Browse files Browse the repository at this point in the history
  • Loading branch information
di-github-bot committed Oct 17, 2023
1 parent 33934de commit 72e1e45
Showing 1 changed file with 27 additions and 0 deletions.
27 changes: 27 additions & 0 deletions .github/workflows/gitleaks_pr.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,27 @@
#####################################
# DO NOT EDIT DIRECTLY. #
# This file is managed by Terraform #
#####################################

on: [pull_request]

jobs:
gitleaks:
runs-on: ubuntu-latest
name: Detect Secrets
steps:
- name: Checkout
uses: actions/checkout@v3
with:
fetch-depth: 0 # Checkout full history to make .gitleaksignore work like it does locally

- name: GitLeaks
uses: gacts/gitleaks@v1 # Action page: <https://github.com/gacts/gitleaks>

- name: Add Failure Instructions to Pull Request
if: ${{ failure() }}
uses: thollander/actions-comment-pull-request@v1 # Action page: <https://github.com/thollander/actions-comment-pull-request>
with:
message: |
:warning: A secret was detected :warning:
Follow instructions in [Notion](https://www.notion.so/definitive-io/GitHub-Secret-Prevention-97986fd7ae9f45dd8703a1e42f7b07f8#027d1f9cd2544a0798505a1817dfe3df) to resolve.

0 comments on commit 72e1e45

Please sign in to comment.