Skip to content

Conversation

@alvarobartt
Copy link
Member

What does this PR do?

This PR adds the following extra_args to the TruffleHog GitHub action:

  • --results=verified,unknown excludes the unverified results from the scanning to prevent false-positives or wrong labels
  • --exclude-detectors=postgres excludes the PostgreSQL false-positives

Before submitting

  • This PR fixes a typo or improves the docs (you can dismiss the other checks if that's the case).
  • Did you read the contributor guideline, Pull Request section?
  • Was this discussed/approved via a GitHub issue or the forum? Please add a link to it if that's the case.
  • Did you make sure to update the documentation with your changes? Here are the documentation guidelines, and here are tips on formatting docstrings.
  • Did you write any new necessary tests?

Who can review?

@Narsil or @McPatate

* `--results=verified,unknown` excludes the unverified results from the
scanning to prevent false-positives or wrong labels
* `--exclude-detectors=postgres` excludes the PostgreSQL false-positives
@alvarobartt alvarobartt requested review from McPatate and Narsil August 11, 2025 08:03
@Narsil Narsil merged commit b316972 into main Aug 11, 2025
14 checks passed
@Narsil Narsil deleted the exclude-unverified-trufflehog branch August 11, 2025 08:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants