-
Notifications
You must be signed in to change notification settings - Fork 9
Commit
* feat: refactor / additional flag autoGenerateIamPermissions - remove CreationType (Single, Multi) - replace with ResourceType (PARAMETER_MULTI) and move it to properties fixes: #1076 - add property 'autoGenerateIamPermissions' fixes: #1087 - add property 'role' for SopsSyncProvider fixes: #1087 - move resourceType from syncOptions to syncProperties, as it shouldn't be set by users - move permissionhandling to own functions, to reduce cyclomatic compexity * chore: self mutation Signed-off-by: github-actions <[email protected]> * chore(Tests): add more tests for permissions testing * fix: autogenerate * fix: init s3Api * fix: remove CreationType everywhere * fix: contribution guide, error messages and sha1sum Signed-off-by: lennartrommeiss <[email protected]> * fix: tests * chore: self mutation Signed-off-by: github-actions <[email protected]> --------- Signed-off-by: github-actions <[email protected]> Signed-off-by: lennartrommeiss <[email protected]> Co-authored-by: github-actions <[email protected]> Co-authored-by: lennartrommeiss <[email protected]>
- Loading branch information
There are no files selected for viewing
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,40 @@ | ||
[extend] | ||
useDefault = true | ||
|
||
[[rules]] | ||
id = "generic-api-key" | ||
# all the other attributes from the default rule are inherited | ||
|
||
[[rules.allowlists]] | ||
regexTarget = "line" | ||
regexes = [ | ||
'''objectKey''', | ||
'''S3Key''', | ||
'''SopsAgeKey''', | ||
'''s3Key''', | ||
] | ||
|
||
[[rules]] | ||
id = "private-key" | ||
|
||
[[rules.allowlists]] | ||
regexTarget = "line" | ||
regexes = [ | ||
'''(.*)OAdqlMznWINBDoyR\+PESgQJlUptwnh(.*)''', | ||
] | ||
|
||
[allowlist] | ||
description = "global allow list" | ||
paths = [ | ||
'''\.gitleaks\.toml''', | ||
'''lambda/events/(.*?)json''', | ||
'''lambda/__snapshots__/(.*?)snap''', | ||
'''test-secrets/(.*?)(json|yaml|yml|env|binary)''', | ||
'''test/(.*)\.integ\.snapshot/(.*?)json''' | ||
] | ||
|
||
regexTarget = "match" | ||
regexes = [ | ||
'''AGE-SECRET-KEY-1EFUWJ0G2XJTJFWTAM2DGMA4VCK3R05W58FSMHZP3MZQ0ZTAQEAFQC6T7T3''', | ||
] | ||
|
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.