mirror of
https://github.com/Sea-Haven-Industries/seahaven-site.git
synced 2026-09-30 04:13:15 +00:00
chore(security): suppress historical elementor gitleaks FP (INFRA-181) (#29)
Some checks failed
Deploy / deploy (push) Has been cancelled
Some checks failed
Deploy / deploy (push) Has been cancelled
Adds a scoped suppression for gitleaks-generic-api-key-2464, a high-entropy false positive in a removed Elementor/WordPress minified vendor bundle that survives only in git history. Not a live secret. With INFRA-143's two reCAPTCHA suppressions, the pre-push scanner now passes cleanly on this repo (0 confirmed high, 3 suppressed) with no --no-verify needed.
This commit is contained in:
parent
7fd529ba98
commit
e9b121ecfa
1 changed files with 4 additions and 0 deletions
|
|
@ -7,6 +7,10 @@
|
|||
{
|
||||
"id": "gitleaks-generic-api-key-5",
|
||||
"justification": "False positive. Same public reCAPTCHA v3 SITE key as gitleaks-generic-api-key-7, flagged at assets/js/form.js:5 from an earlier commit (gitleaks scans git history). Public by design, not a secret. INFRA-143."
|
||||
},
|
||||
{
|
||||
"id": "gitleaks-generic-api-key-2464",
|
||||
"justification": "False positive. gitleaks flags a high-entropy string at wp-content/plugins/elementor-pro/assets/js/notes/vendors-...-e4587e.js:2464 (a minified radix-ui vendor bundle: the token is a bundler variable, not a credential). This legacy WordPress/Elementor bundle was removed from the repo and survives only in git history, which gitleaks scans. Not a live secret, nothing to rotate. INFRA-181."
|
||||
}
|
||||
]
|
||||
}
|
||||
|
|
|
|||
Loading…
Add table
Reference in a new issue