Skip to content

fix: pin GitHub Actions to full SHA (CLOUDEVOPS-4942) #19

fix: pin GitHub Actions to full SHA (CLOUDEVOPS-4942)

fix: pin GitHub Actions to full SHA (CLOUDEVOPS-4942) #19

Workflow file for this run

name: Scanning for secrets in commits
on:
pull_request:
branches:
- master
permissions:
contents: read
pull-requests: write
jobs:
Scan_Secrets_in_commit:
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4
with:
fetch-depth: 10
- name: Secret Scanning
uses: trufflesecurity/trufflehog@6171fa9f6676edf21e15bba41f049b18399d7372 # main
with:
extra_args: --exclude-paths=.script/SecretScanning/Excludepathlist --only-verified