Commit 2df95ce
committed
ci: switch gitleaks-action to gitleaks CLI
The marketplace action calls /pulls/<n>/commits which fails on
Dependabot PRs (read-only GITHUB_TOKEN, 403 'Resource not accessible
by integration'). Running the CLI on the checked-out tree avoids the
GitHub API entirely and works for push, normal PRs, and Dependabot PRs.
SARIF output uploaded to the Security tab for triage.1 parent a47717b commit 2df95ce
1 file changed
Lines changed: 22 additions & 4 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
89 | 89 | | |
90 | 90 | | |
91 | 91 | | |
92 | | - | |
93 | | - | |
94 | | - | |
95 | | - | |
| 92 | + | |
| 93 | + | |
| 94 | + | |
| 95 | + | |
| 96 | + | |
| 97 | + | |
| 98 | + | |
| 99 | + | |
| 100 | + | |
| 101 | + | |
| 102 | + | |
| 103 | + | |
| 104 | + | |
| 105 | + | |
| 106 | + | |
| 107 | + | |
| 108 | + | |
| 109 | + | |
| 110 | + | |
| 111 | + | |
| 112 | + | |
| 113 | + | |
96 | 114 | | |
97 | 115 | | |
98 | 116 | | |
| |||
0 commit comments