mirror of
https://github.com/Sea-Haven-Industries/security-review.git
synced 2026-09-30 03:23:13 +00:00
10 lines
576 B
Text
10 lines
576 B
Text
|
|
This repo is excluded from the org-wide security sweep and the local git pre-push gate.
|
||
|
|
|
||
|
|
Reason: it intentionally contains secret-shaped / deliberately-vulnerable content that would
|
||
|
|
otherwise always ALARM — the `canary/` anti-complacency corpus (planted vulns, answer key in
|
||
|
|
`canary-meta/`) and the checker test fixtures under `checkers/fixtures/`.
|
||
|
|
|
||
|
|
The nightly sweep scans `canary/` DIRECTLY as its recall-floor check, bypassing this skip marker
|
||
|
|
(that is the whole point of the canary). Repos skipped via a committed marker are logged in the
|
||
|
|
sweep report for auditability.
|