Skip to content

Commit 69fd6cf

Browse files
committed
fix(ci): baseline README.md false positives from nox security scan
Add 22 baseline entries for README.md documentation strings falsely flagged as API keys (Braintree, PagerDuty, Datadog, etc.). These are example code snippets and Go hex hashes in documentation, not secrets.
1 parent d66a905 commit 69fd6cf

1 file changed

Lines changed: 176 additions & 0 deletions

File tree

.nox/baseline.json

Lines changed: 176 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -256,6 +256,182 @@
256256
"severity": "high",
257257
"reason": "Accepted: actions/upload-pages-artifact pinned to major version tag",
258258
"created_at": "2026-03-25T06:41:22.483607Z"
259+
},
260+
{
261+
"fingerprint": "2a3ab7172ebe030a112c310d0247440f3a88c75b626a0988f6d70bf938e6e4ac",
262+
"rule_id": "SEC-384",
263+
"file_path": "README.md",
264+
"severity": "high",
265+
"reason": "False positive: Detected Braintree API key - example code/documentation in README.md",
266+
"created_at": "2026-03-25T08:30:00.000000Z"
267+
},
268+
{
269+
"fingerprint": "c3d7b9b8dc3a0bc4eb39fb4bf16ca6dc322d60364953037c5010baeba6d0b709",
270+
"rule_id": "SEC-384",
271+
"file_path": "README.md",
272+
"severity": "high",
273+
"reason": "False positive: Detected Braintree API key - example code/documentation in README.md",
274+
"created_at": "2026-03-25T08:30:00.000000Z"
275+
},
276+
{
277+
"fingerprint": "948fe75536707f1ace05d7c3384fe2d9841d370c667bfe7c66256dae0dadf6eb",
278+
"rule_id": "SEC-505",
279+
"file_path": "README.md",
280+
"severity": "high",
281+
"reason": "False positive: Detected Maven Repository Token - example code/documentation in README.md",
282+
"created_at": "2026-03-25T08:30:00.000000Z"
283+
},
284+
{
285+
"fingerprint": "bce1473b326122e83122d0330e7856c0aac111ef7a09cd563656d9d8d6b751f7",
286+
"rule_id": "SEC-505",
287+
"file_path": "README.md",
288+
"severity": "high",
289+
"reason": "False positive: Detected Maven Repository Token - example code/documentation in README.md",
290+
"created_at": "2026-03-25T08:30:00.000000Z"
291+
},
292+
{
293+
"fingerprint": "e0825094082a7155918ad19bbb24aca685d6c55fa5587180398f0de4834228b3",
294+
"rule_id": "SEC-506",
295+
"file_path": "README.md",
296+
"severity": "high",
297+
"reason": "False positive: Detected NuGet API Key - example code/documentation in README.md",
298+
"created_at": "2026-03-25T08:30:00.000000Z"
299+
},
300+
{
301+
"fingerprint": "3bd277ce6ca443c45873e6c0ccdb5cd3f981085198b1a09bec778cb57cf5fb82",
302+
"rule_id": "SEC-506",
303+
"file_path": "README.md",
304+
"severity": "high",
305+
"reason": "False positive: Detected NuGet API Key - example code/documentation in README.md",
306+
"created_at": "2026-03-25T08:30:00.000000Z"
307+
},
308+
{
309+
"fingerprint": "b17b4b1fb7af0096f54276652348d8dee5857d26ece6b6c9d4628ebb61453fa1",
310+
"rule_id": "SEC-525",
311+
"file_path": "README.md",
312+
"severity": "high",
313+
"reason": "False positive: Detected DigitalOcean API Key (alternate) - example code/documentation in README.md",
314+
"created_at": "2026-03-25T08:30:00.000000Z"
315+
},
316+
{
317+
"fingerprint": "d3834eea16439c92d9aee0ffbd107e97f52318d75e71fecc74a41b8f093268bb",
318+
"rule_id": "SEC-525",
319+
"file_path": "README.md",
320+
"severity": "high",
321+
"reason": "False positive: Detected DigitalOcean API Key (alternate) - example code/documentation in README.md",
322+
"created_at": "2026-03-25T08:30:00.000000Z"
323+
},
324+
{
325+
"fingerprint": "c5f91b36f1789d2833471736e6ea0e7f3e96b624042bfab4f6cb003523c24540",
326+
"rule_id": "SEC-543",
327+
"file_path": "README.md",
328+
"severity": "high",
329+
"reason": "False positive: Detected Datadog API Key (alternate) - example code/documentation in README.md",
330+
"created_at": "2026-03-25T08:30:00.000000Z"
331+
},
332+
{
333+
"fingerprint": "fc005400cd891de323c978d38257c5032ca6651d472bdb14124c8b6f5ee14b74",
334+
"rule_id": "SEC-543",
335+
"file_path": "README.md",
336+
"severity": "high",
337+
"reason": "False positive: Detected Datadog API Key (alternate) - example code/documentation in README.md",
338+
"created_at": "2026-03-25T08:30:00.000000Z"
339+
},
340+
{
341+
"fingerprint": "cbaa3bf96328fb78680bcf26807d2ebbca82253914de49a2a2c7caa82891089f",
342+
"rule_id": "SEC-545",
343+
"file_path": "README.md",
344+
"severity": "high",
345+
"reason": "False positive: Detected PagerDuty API Key (alternate) - example code/documentation in README.md",
346+
"created_at": "2026-03-25T08:30:00.000000Z"
347+
},
348+
{
349+
"fingerprint": "68dc02f272a1ba2e4c269927c76cf7072cb3c60f6fb45cabbb22d2be09a7ff97",
350+
"rule_id": "SEC-545",
351+
"file_path": "README.md",
352+
"severity": "high",
353+
"reason": "False positive: Detected PagerDuty API Key (alternate) - example code/documentation in README.md",
354+
"created_at": "2026-03-25T08:30:00.000000Z"
355+
},
356+
{
357+
"fingerprint": "d20747b21528f1b434b440bec3fe9fb0e115709bf142ad199b214563f3d713c2",
358+
"rule_id": "SEC-545",
359+
"file_path": "README.md",
360+
"severity": "high",
361+
"reason": "False positive: Detected PagerDuty API Key (alternate) - example code/documentation in README.md",
362+
"created_at": "2026-03-25T08:30:00.000000Z"
363+
},
364+
{
365+
"fingerprint": "000530dfc799318c6af6214bf5126d4121451c024c7c0f4b067f1f56acb73973",
366+
"rule_id": "SEC-545",
367+
"file_path": "README.md",
368+
"severity": "high",
369+
"reason": "False positive: Detected PagerDuty API Key (alternate) - example code/documentation in README.md",
370+
"created_at": "2026-03-25T08:30:00.000000Z"
371+
},
372+
{
373+
"fingerprint": "6ae1c57dc169276fb595513565d6882af59c93a6f5dc20e39925c328ecce602b",
374+
"rule_id": "SEC-621",
375+
"file_path": "README.md",
376+
"severity": "high",
377+
"reason": "False positive: Detected SendGrid API Key - example code/documentation in README.md",
378+
"created_at": "2026-03-25T08:30:00.000000Z"
379+
},
380+
{
381+
"fingerprint": "d261970621795da102d2e924ac11884c1cb597768b4cc3e4369c3ff275fa9347",
382+
"rule_id": "SEC-621",
383+
"file_path": "README.md",
384+
"severity": "high",
385+
"reason": "False positive: Detected SendGrid API Key - example code/documentation in README.md",
386+
"created_at": "2026-03-25T08:30:00.000000Z"
387+
},
388+
{
389+
"fingerprint": "de038222685b1d2dbb47654d3150d1ca0f5665360aa0c1b1fbbea1967c24eb7a",
390+
"rule_id": "SEC-629",
391+
"file_path": "README.md",
392+
"severity": "high",
393+
"reason": "False positive: Detected LOB API Key - example code/documentation in README.md",
394+
"created_at": "2026-03-25T08:30:00.000000Z"
395+
},
396+
{
397+
"fingerprint": "8a33f9b3000f23300c3c0d6cd5d47403d23c248d57804bf4907a4c3ec49bc12a",
398+
"rule_id": "SEC-629",
399+
"file_path": "README.md",
400+
"severity": "high",
401+
"reason": "False positive: Detected LOB API Key - example code/documentation in README.md",
402+
"created_at": "2026-03-25T08:30:00.000000Z"
403+
},
404+
{
405+
"fingerprint": "51a930745a04c6b742811d86326e33f56aaa08542bdce70680cfbf828542f587",
406+
"rule_id": "SEC-678",
407+
"file_path": "README.md",
408+
"severity": "high",
409+
"reason": "False positive: Detected Datadog API Key - example code/documentation in README.md",
410+
"created_at": "2026-03-25T08:30:00.000000Z"
411+
},
412+
{
413+
"fingerprint": "c9b1393763efc33895571e79ce24ff487dc4d6eca1fd564fd084b0c11f75aa51",
414+
"rule_id": "SEC-678",
415+
"file_path": "README.md",
416+
"severity": "high",
417+
"reason": "False positive: Detected Datadog API Key - example code/documentation in README.md",
418+
"created_at": "2026-03-25T08:30:00.000000Z"
419+
},
420+
{
421+
"fingerprint": "b71c1c0978c7d21d63f69e11770928d6cf18285171f686889e7652e9f277f708",
422+
"rule_id": "SEC-679",
423+
"file_path": "README.md",
424+
"severity": "high",
425+
"reason": "False positive: Detected Grafana API Key - example code/documentation in README.md",
426+
"created_at": "2026-03-25T08:30:00.000000Z"
427+
},
428+
{
429+
"fingerprint": "77843c19bd6352147e272122d02cff74c8283bec79533187a6ba9d11ba90efe3",
430+
"rule_id": "SEC-679",
431+
"file_path": "README.md",
432+
"severity": "high",
433+
"reason": "False positive: Detected Grafana API Key - example code/documentation in README.md",
434+
"created_at": "2026-03-25T08:30:00.000000Z"
259435
}
260436
]
261437
}

0 commit comments

Comments
 (0)