Skip to content

Commit

Permalink
fix(policies): improve sensitive data check (#191)
Browse files Browse the repository at this point in the history
fix: improve sensitive data check
  • Loading branch information
elsapet committed Dec 5, 2022
1 parent 6f7df63 commit 9b4e1f9
Showing 1 changed file with 6 additions and 2 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -4,19 +4,23 @@ import future.keywords

sensitive_data_group_uuid := "f6a0c071-5908-4420-bac2-bba28d41223e"

medium[item] {
has_sensitive_data if {
some data_type in input.dataflow.data_types

some category in input.data_categories
category.uuid == data_type.category_uuid
category.group_uuid == sensitive_data_group_uuid
}

medium[item] {
has_sensitive_data == true

some detector in input.dataflow.risks
detector.detector_id == input.policy_id
location = detector.locations[_]

item = {
"category_group": category.group_name,
"category_group": "sensitive data",
"filename": location.filename,
"line_number": location.line_number,
"parent_line_number": location.parent.line_number,
Expand Down

0 comments on commit 9b4e1f9

Please sign in to comment.