You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The issue was that the .secrets.baseline referenced two .pem files which were not included in the commit (indeed, they're in the .gitignore).
But when the workflow runs and compares the results with the baseline, it only sees the difference, and assumes any difference is a new disclosure. A smarter workflow would only report new disclosures, not a reduction in secrets.
Checked for duplicates
No - I haven't checked
π Describe the bug
Fails to install plugins and public emails are flagged as secrets.
π΅οΈ Expected behavior
detect-secrets has plugins that should prevent this
π To Reproduce
Push changes to the repository
π₯ Environment Info
...
π Version of Software Used
No response
π©Ί Test Data / Additional context
No response
π¦ Related requirements
π¦ #xyz
βοΈ Engineering Details
No response
π Integration & Test
No response
The text was updated successfully, but these errors were encountered: