Skip to content

Add more patterns to gitleaks.toml

rossfuhrman requested to merge rf-update-gitleaks-toml into master

What does this MR do and why?

Add more patterns to gitleaks.toml

This set of patterns is defined by the vetting work done with https://docs.google.com/spreadsheets/d/1r6I3dw-2kSMvrAXlw38_aH5tNLu0GvA1hU5wra_r6fM/edit#gid=1147247764 and aligned with inflight MRs to https://gitlab.com/gitlab-org/security-products/analyzers/secrets with the aim to rely on well-established patterns for low-FPs and performant computation.

See this comment for comparison against analyzer ruleset

EE: true Changelog: changed

Addresses #427011 (closed)

Screenshots or screen recordings

Screenshots are required for UI changes, and strongly recommended for all other merge requests.

Before After

How to set up and validate locally

Numbered steps to set up and validate the change are strongly suggested.

MR acceptance checklist

This checklist encourages us to confirm any changes have been analyzed to reduce risks in quality, performance, reliability, security, and maintainability.

Edited by Amar Patel

Merge request reports

Loading