076331ca6b
* Update github-actions * Match scripts/lint.sh golangci-lint version to CI workflow Local linting pinned v2.11.4 while the workflow now pins v2.12.2, so goconst, dupl, and gosec results could diverge between local and CI runs. Co-authored-by: Cursor <[email protected]> --------- Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Co-authored-by: Bryan Beverly <[email protected]> Co-authored-by: Cursor <[email protected]>
27 lines
580 B
YAML
27 lines
580 B
YAML
name: Scan for secrets
|
|
|
|
on:
|
|
push:
|
|
tags:
|
|
- v*
|
|
branches:
|
|
- main
|
|
pull_request:
|
|
workflow_dispatch:
|
|
|
|
jobs:
|
|
test:
|
|
if: ${{ github.repository == 'trufflesecurity/trufflehog' && !github.event.pull_request.head.repo.fork }}
|
|
runs-on: ubuntu-latest
|
|
steps:
|
|
- name: Checkout code
|
|
uses: actions/checkout@d23441a48e516b6c34aea4fa41551a30e30af803 # v6
|
|
with:
|
|
fetch-depth: 0
|
|
ref: ${{ github.head_ref }}
|
|
- name: Dogfood
|
|
uses: ./
|
|
id: dogfood
|
|
with:
|
|
extra_args: --results=verified
|