Files
trufflehog/.github/workflows/secrets.yml
renovate[bot]Cursorrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>Bryan Beverly
076331ca6b Update github-actions (#5036)
* Update github-actions

* Match scripts/lint.sh golangci-lint version to CI workflow

Local linting pinned v2.11.4 while the workflow now pins v2.12.2, so
goconst, dupl, and gosec results could diverge between local and CI runs.

Co-authored-by: Cursor <[email protected]>

---------

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: Bryan Beverly <[email protected]>
Co-authored-by: Cursor <[email protected]>
2026-07-31 00:50:23 -07:00

27 lines
580 B
YAML

name: Scan for secrets
on:
push:
tags:
- v*
branches:
- main
pull_request:
workflow_dispatch:
jobs:
test:
if: ${{ github.repository == 'trufflesecurity/trufflehog' && !github.event.pull_request.head.repo.fork }}
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@d23441a48e516b6c34aea4fa41551a30e30af803 # v6
with:
fetch-depth: 0
ref: ${{ github.head_ref }}
- name: Dogfood
uses: ./
id: dogfood
with:
extra_args: --results=verified