Keep detected secrets removed in upper layer #2194
Labels
kind/feature
Categorizes issue or PR as related to a new feature.
priority/backlog
Higher priority than priority/awaiting-more-evidence.
scan/secret
Issues relating to secret scanning
Description
Trivy currently scans hard-coded secrets in each layer and ignores a secret if it is removed in the upper layer. It is essential for vulnerability scanning, but on the other hand, removed secrets should be kept in secret scanning.
The text was updated successfully, but these errors were encountered: