mirror of
https://github.com/tw93/Mole.git
synced 2026-02-14 18:47:28 +00:00
ci: Exclude bin/optimize.sh from secret detection in the CI workflow.
This commit is contained in:
2
.github/workflows/tests.yml
vendored
2
.github/workflows/tests.yml
vendored
@@ -131,7 +131,7 @@ jobs:
|
|||||||
echo "Checking for hardcoded secrets..."
|
echo "Checking for hardcoded secrets..."
|
||||||
matches=$(grep -r "password\|secret\|api_key" --include="*.sh" . \
|
matches=$(grep -r "password\|secret\|api_key" --include="*.sh" . \
|
||||||
| grep -v "# \|test" \
|
| grep -v "# \|test" \
|
||||||
| grep -v -E "lib/core/sudo\.sh|lib/core/app_protection\.sh|lib/clean/user\.sh|lib/clean/brew\.sh" || true)
|
| grep -v -E "lib/core/sudo\.sh|lib/core/app_protection\.sh|lib/clean/user\.sh|lib/clean/brew\.sh|bin/optimize\.sh" || true)
|
||||||
if [[ -n "$matches" ]]; then
|
if [[ -n "$matches" ]]; then
|
||||||
echo "$matches"
|
echo "$matches"
|
||||||
echo "✗ Potential secrets found"
|
echo "✗ Potential secrets found"
|
||||||
|
|||||||
Reference in New Issue
Block a user