Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Docker scans do not use ignored-paths configuration option #548

Open
irgeek opened this issue May 30, 2023 · 1 comment
Open

Docker scans do not use ignored-paths configuration option #548

irgeek opened this issue May 30, 2023 · 1 comment
Labels
status:confirmed This issue has been reviewed and confirmed type:bug Something isn't working

Comments

@irgeek
Copy link
Contributor

irgeek commented May 30, 2023

The exclusion list defined in the .gitguardian.yml under secret > ignored-paths is not honoured by the ggshield secret scan docker command.

@agateau-gg agateau-gg added type:bug Something isn't working status:confirmed This issue has been reviewed and confirmed labels May 30, 2023
@i-ate-a-vm
Copy link

Was anything ever done about this issue? I'm still seeing it in our pipeline. The AWS JS SDK includes example access keys in a few locations, so it would be nice to be able to ignore that folder on our fully built image instead of having to reference every occurrence of the secret after we fail the scan.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
status:confirmed This issue has been reviewed and confirmed type:bug Something isn't working
Projects
None yet
Development

No branches or pull requests

3 participants