Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Monitor/enable GitHub's secret detection feature #363

Open
mogul opened this issue Mar 2, 2023 · 3 comments
Open

Monitor/enable GitHub's secret detection feature #363

mogul opened this issue Mar 2, 2023 · 3 comments
Labels
enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed

Comments

@mogul
Copy link

mogul commented Mar 2, 2023

GitHub now offers secret scanning alerts, but they have to be explicitly enabled.

This is exactly the kind of thing that one might want to detect/enforce via policy across a large set of repositories, so it seems like a great thing for Allstar to be able to manage!

@mogul mogul changed the title Enable toggling of secret detection Monitor/enable GitHub's secret detection feature Mar 2, 2023
@jeffmendoza
Copy link
Member

Yes, if it has an API and is not easily done at the org level, we should have an Allstar policy to turn it on. Thanks for the suggestion!

@jeffmendoza jeffmendoza added enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed labels Mar 2, 2023
@mogul
Copy link
Author

mogul commented Mar 3, 2023

There's an API for configuring it per-repository. Nothing at the org level AFAICS.

@markdboyd
Copy link
Contributor

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed
Projects
None yet
Development

No branches or pull requests

3 participants