Description
Description
As a dev on the seCureLI team, after completing the build pipeline to check the tool against known ‘bad state’ repos, there is some fast follow up work that needs to be completed.
Technical Details
Will require finding, or creating git repos that the pipeline can access that have secrets embedded in them.
Create repo as part of the Secure Build project
Should only cover detect-secrets errors
Acceptance criteria
_- Repo identified or created with the supporting language with 1+ secrets saved to it (fake secrets, of course)
When the tool runs and successfully throws and error (expected behavior) the build does not fail.
If the tool runs and does NOT throw an error (unexpected behavior) the build fails, as the tool did not properly detect the error._
Pipeline tasks need to be created for each of our supported languages:
Java
Terraform
TypeScript
JavaScript
Python
Kotlin
Go
CloudFormation
.NET Core
C#
Swift
Metadata
Metadata
Assignees
Labels
Type
Projects
Status
Todo