Skip to content

Commit d518ac6

Browse files
authored
Merge pull request #1096 from GitGuardian/agateau/docker-scan-usr-src-app
Make `scan docker` scan files in /usr/src/app
2 parents a157352 + f6a9981 commit d518ac6

File tree

3 files changed

+5
-1
lines changed

3 files changed

+5
-1
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
### Changed
2+
3+
- `ggshield secret scan docker` now scans files in `/usr/src/app`.

ggshield/verticals/secret/docker.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -33,7 +33,7 @@
3333
from ggshield.core.scan import ScanContext
3434

3535
FILEPATH_BANLIST = [
36-
r"^/?usr/(?!share/nginx)",
36+
r"^/?usr/(?!share/nginx|src/app)",
3737
r"^/?lib/",
3838
r"^/?share/",
3939
r"^/?bin/",

tests/unit/cmd/scan/test_docker.py

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -35,6 +35,7 @@ class TestDockerUtils:
3535
["/my/file/secret.py", set(), True],
3636
["/my/file/usr/bin/secret.py", set(), True],
3737
["/usr/share/nginx/secret.py", set(), True],
38+
["/usr/src/app/secret.py", set(), True],
3839
["/gems/secret.py", set(), True],
3940
["/npm-bis/secret.py", set(), True],
4041
["/banned/extension/secret.exe", set(), False],

0 commit comments

Comments
 (0)