Skip to content

Add narrow secret-scan ignore config - #12

Open
imanimanyara wants to merge 2 commits into
mainfrom
chore/secret-hygiene
Open

imanimanyara wants to merge 2 commits into
mainfrom
chore/secret-hygiene

Conversation

@imanimanyara

Copy link
Copy Markdown
Member

Summary

Adds .gitguardian.yaml and .gitleaks.toml, written by agent-kit secret_scan.py check --write. They ignore only **/.env.example and **/*.example; no source, test tree, docs path or detector is excluded.

The scan found no placeholder credentials to rewrite in tracked files.

The GitGuardian GitHub App does not read .gitguardian.yaml; the file keeps ggshield and gitleaks runs quiet and records which paths hold placeholders, so the same paths can be mirrored in the GitGuardian dashboard exclusion rules.

Verified locally: secret_scan.py check --ref HEAD exits 0 (0 real, 0 dummy). Gates: make verify-structure, make lint (shellcheck, 100 files).

Ignore only the example-env paths, for ggshield and gitleaks. No source, test tree,
docs or detector is excluded.
Copilot AI balanced review requested due to automatic review settings October 8, 2026 11:22

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot was unable to review this pull request because the user who requested the review has reached their quota limit.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants