chore: Add Gitleaks configuration and enhance CI workflow for backend validation
CI / skip-ci-check (pull_request) Successful in 1m28s
CI / lint-and-type-check (pull_request) Successful in 2m7s
CI / python-lint (pull_request) Successful in 1m54s
CI / test-backend (pull_request) Successful in 3m10s
CI / build (pull_request) Failing after 1m35s
CI / secret-scanning (pull_request) Successful in 1m37s
CI / dependency-scan (pull_request) Successful in 1m35s
CI / sast-scan (pull_request) Successful in 2m45s
CI / workflow-summary (pull_request) Successful in 1m28s

This commit introduces a Gitleaks configuration file to manage known false positives and improve security by preventing the accidental exposure of sensitive information. Additionally, it enhances the CI workflow by adding a step to validate backend imports and application structure, ensuring that core modules and API routers can be imported successfully without starting the server or connecting to a database.
This commit is contained in:
Tanya
2026-01-08 14:33:51 -05:00
parent 922c468e9b
commit 7dd95cbcd0
3 changed files with 102 additions and 2 deletions
+1
View File
@@ -432,6 +432,7 @@ class TestAuthenticationMiddleware:
def test_get_current_user_with_expired_token(self, test_client: TestClient):
"""Verify 401 with expired JWT."""
# Create an obviously invalid/expired token
# Note: This is a test fixture, not a real secret. The token is intentionally invalid.
expired_token = "eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJzdWIiOiJhZG1pbiIsImV4cCI6MTYwOTQ1NjgwMH0.invalid"
response = test_client.get(