ci: add homelab gitleaks allowlist
Some checks failed
CI / skip-ci-check (pull_request) Successful in 9s
CI / secret-scan (pull_request) Successful in 10s
CI / node-ci (pull_request) Failing after 34s

This commit is contained in:
ilia 2026-05-29 21:19:53 -05:00
parent 124b4d3b91
commit 15860316cd

19
.gitleaks.toml Normal file
View File

@ -0,0 +1,19 @@
# Homelab bootstrap — gitleaks allowlist (tests, examples, placeholders)
title = "homelab gitea bootstrap"
[allowlist]
description = "Test fixtures and example configs are not production secrets"
paths = [
'''(?i).*\.test\.(ts|tsx|js|jsx|py)$''',
'''(?i).*\.spec\.(ts|tsx|js|jsx)$''',
'''(?i).*/tests/.*''',
'''(?i).*/__tests__/.*''',
'''(?i).*\.example\.(yml|yaml|env|json|toml)$''',
'''(?i).*vault\.example\.(yml|yaml)$''',
'''(?i).*\.env\.example$''',
]
regexes = [
'''(?i)(invalid|fake|dummy|placeholder|example|changeme|change_me|not-a-real)''',
'''(?i)sk-or-invalid''',
'''(?i)msk-or-invalid''',
]