reformat gitleaks.toml to correct parsing errors

This commit is contained in:
2025-09-24 20:41:03 -04:00
parent 08eb1eee60
commit b606507f4f
+11 -4
View File
@@ -3,23 +3,30 @@ title = "Gitleaks Docker Compose CI/CD Config"
[[rules]] [[rules]]
id = "docker-env-password" id = "docker-env-password"
description = "Possible password in docker-compose environment" description = "Possible password in docker-compose environment"
regex = '''(?i)([A-Z0-9_]*(PASSWORD|PASS|PWD))[=:]\s*['"]?[A-Za-z0-9!@#$%^&*()_+={}\[\]:;,.<>?~-]{6,}['"]?''' regex = "(?i)([A-Z0-9_]*(PASSWORD|PASS|PWD))[=:]\\s*['\"]?[A-Za-z0-9!@#$%^&*()_+={}\\[\\]:;,.<>?~-]{6,}['\"]?"
tags = ["docker", "compose", "password", "env"] tags = ["docker", "compose", "password", "env"]
[[rules]] [[rules]]
id = "docker-env-secret" id = "docker-env-secret"
description = "Generic secret or token in docker-compose environment" description = "Generic secret or token in docker-compose environment"
regex = '''(?i)(SECRET|TOKEN|API[_-]?KEY)[=:]\s*['"]?[A-Za-z0-9_\-]{16,}['"]?''' regex = "(?i)(SECRET|TOKEN|API[_-]?KEY)[=:]\\s*['\"]?[A-Za-z0-9_\\-]{16,}['\"]?"
tags = ["docker", "compose", "secret", "env"] tags = ["docker", "compose", "secret", "env"]
[[rules]] [[rules]]
id = "aws-credentials" id = "aws-credentials"
description = "AWS Access Key or Secret" description = "AWS Access Key or Secret"
regex = '''(AKIA[0-9A-Z]{16}|(?i)aws[_-]secret[_-]access[_-]key\s*[:=]\s*[A-Za-z0-9/+=]{40})''' regex = "(AKIA[0-9A-Z]{16}|(?i)aws[_-]secret[_-]access[_-]key\\s*[:=]\\s*[A-Za-z0-9/+=]{40})"
tags = ["aws", "compose", "credentials"] tags = ["aws", "compose", "credentials"]
[[rules]] [[rules]]
id = "private-key" id = "private-key"
description = "Private key detected" description = "Private key detected"
regex = '''-----BEGIN( RSA| EC| DSA)? PRIVATE KEY-----''' regex = "-----BEGIN( RSA| EC| DSA)? PRIVATE KEY-----"
tags = ["key", "pem", "compose"] tags = ["key", "pem", "compose"]
[allowlist]
files = [
"docker-compose\\.ya?ml",
"\\.env"
]