copyright-header icon indicating copy to clipboard operation
copyright-header copied to clipboard

Add repo security scanner to CI

Open menge101 opened this issue 7 years ago • 2 comments
trafficstars

https://github.com/UKHomeOffice/repo-security-scanner

Checks for credentials, secrets, etc checked into repo, should be an easy add to CI

menge101 avatar Aug 08 '18 18:08 menge101

Evaluate that one versus these:

https://github.com/awslabs/git-secrets https://github.com/zricethezav/gitleaks

menge101 avatar Aug 08 '18 18:08 menge101

This is a great suggestion. We'll work towards implementing it, but may take a while. We'll start by adding a couple of the utilities to our cloudposse/packages distribution and then integrate it into our cloudposse/build-harness.

osterman avatar Aug 10 '18 04:08 osterman