Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
56 commits
Select commit Hold shift + click to select a range
96f0d08
Update PAT
souro1212 Mar 15, 2024
fb237d0
Update PAT
souro1212 Mar 15, 2024
99d0d88
Update keys
souro1212 Mar 15, 2024
f7954b6
Create trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
5d6b7e5
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
bebdb81
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
c691348
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
e31ee33
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
2446c34
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
e21a0f5
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
f138740
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
bcd4c87
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
fc72ab6
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
f3ff285
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
41acd01
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
488c831
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
233e793
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
bf859d1
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
3239a78
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
cce5886
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
44b77a5
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
fccc1e4
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
e09255c
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
973dff5
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
365812c
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
a25d117
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
b5ef333
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
c607c3e
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
9419e9d
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
21db05e
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
355af3f
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
60448ce
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
2ef2d11
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
99ee6d2
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
1e5d117
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
fc70d3c
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
3b593b7
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
62a818b
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
f06f0cf
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
8d87788
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
443ca9c
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
e89712c
Update trufflehog-secret-scan.yaml
souro1212 Mar 18, 2024
7e4f5ed
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
6f4c893
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
482f618
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
eaa9c96
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
0d393fe
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
98fdf94
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
1429b13
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
7a12650
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
43d9221
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
f50857f
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
af75c44
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
96432f2
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
5114641
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
0e546de
Update trufflehog-secret-scan.yaml
souro1212 Mar 26, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
70 changes: 70 additions & 0 deletions .github/workflows/trufflehog-secret-scan.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,70 @@
name: CI
on: push
jobs:
trufflehog:
runs-on: ubuntu-latest
env:
ORG_NAME: ${{ secrets.TRUFFLEHOG_ORG_NAME }}
PAT_TOKEN: ${{ secrets.PAT_TOKEN }}
steps:
- name: Checkout repository
uses: actions/checkout@v2

- name: Secret Scanning
run: |
echo $GITHUB_REPOSITORY
echo "Branch name is ${GITHUB_REF##*/}"
docker run --rm -e DOCKER_TTY=0 -v "$PWD:/pwd" trufflesecurity/trufflehog:latest github --repo=https://github.com/$GITHUB_REPOSITORY --token=$PAT_TOKEN --only-verified > trufflehog_result.txt
# Add error handling if the previous command fails
if [ $? -ne 0 ]; then
echo "Trufflehog execution failed"
exit 1
fi

- name: Upload Trufflehog Result
uses: actions/upload-artifact@v2
with:
name: TruffleHog Results
path: trufflehog_result.txt

- name: Add output to Job Summary
run: cat trufflehog_result.txt >> $GITHUB_STEP_SUMMARY
shell: bash

- name: Read comment from file
id: read-comment
run: |
COMMENT=$(cat trufflehog_result.txt)
echo "::set-output name=comment::$COMMENT"

- name: Add a comment to the PR
env:
GH_TOKEN: ${{ secrets.PAT_TOKEN }}
COMMENT: ${{ steps.read-comment.outputs.comment }}
PULL_NUMBER: ${{ github.event.number }}
COMMIT_ID: ${{ steps.commit_sha.outputs.sha }}
run: |
echo PULL_NUMBER
echo ${{ github.event.number }}
echo COMMIT_ID
echo ${{ steps.commit_sha.outputs.sha }}
curl -L \
-X POST \
-H "Accept: application/vnd.github+json" \
-H "Authorization: Bearer ${{ secrets.GITHUB_TOKEN }}" \
-H "X-GitHub-Api-Version: 2022-11-28" \
https://api.github.com/repos/${{ github.repository }}/pulls/${ PULL_NUMBER }/comments \
-d '{"body":"Great stuff!","commit_id":"$COMMIT_ID","path":"trufflehog_result.txt","start_line":1,"start_side":"RIGHT","line":2,"side":"RIGHT"}'

- name: Check file size
run: |
FILE_PATH="trufflehog_result.txt"
FILE_SIZE=$(stat -c %s "$FILE_PATH")

if [ "$FILE_SIZE" -eq 0 ]; then
echo "No Secrets Found" >> $GITHUB_STEP_SUMMARY
exit 0
else
echo "File size is not zero."
exit 1
fi
2 changes: 1 addition & 1 deletion PAT
Original file line number Diff line number Diff line change
@@ -1,2 +1,2 @@
[default]
PAT = ***REMOVED***
PAT = ***REMOVED***
2 changes: 1 addition & 1 deletion keys
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ Private key:
-----BEGIN OPENSSH PRIVATE KEY-----
***REMOVED***NIZuun
xgLkM8KuzfmQuRAAAAEAAAAAEAAAGXAAAAB3NzaC1yc2EAAAADAQABAAABgQDe3Al0EMPz
utVNk5DixaYrGMK56RqUoqGBinke6SWVWmqom1lBcJWzor6HlnMRPPr7YCEsJKL4IpuVwu
utVNk5DixaYrGMK56RqUoqGBinke6SWVWmqom1lBcJWzor6HlnMRPPr7YCEsJKL4IpuVwv
inRa5kdtNTyM7yyQTSR2xXCS0fUItNuq8pUktsH8VUggpMeew8hJv7rFA7tnIg3UXCl6iF
OLZKbDA5aa24idpcD8b1I9/RzTOB1fu0of5xd9vgODzGw5JvHQSJ0FaA42aNBMGwrDhDB3
sgnRNdWf6NNIh8KpXXMKJADf3klsyn6He8L2bPMp8a4wwys2YB35p5zQ0JURovsdewlOxH
Expand Down