-
Notifications
You must be signed in to change notification settings - Fork 131
/
action.yml
27 lines (24 loc) · 1017 Bytes
/
action.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
name: 'ggshield scan'
description: 'Scan commits for hardcoded secrets and security policy breaks.'
author: GitGuardian <support@gitguardian.com>
branding:
icon: 'shield'
color: 'blue'
inputs:
args:
description: |
Arguments to be passed to ggshield secret scan
Options:
--json Output results in JSON format [default: False]
--show-secrets Show secrets in plaintext instead of hiding them.
--all-policies Present fails of all policies (Filenames, FileExtensions,
Secret Detection). By default, only Secret Detection is shown.
--exit-zero Always return a 0 (non-error) status code, even if incidents are found.
-b, --banlist-detector TEXT Exclude results from a detector.
required: false
runs:
using: 'docker'
image: '../../Dockerfile'
entrypoint: '/app/docker/actions-secret-entrypoint.sh'
args:
- ${{ inputs.args }}