Skip to content

Commit c38506c

Browse files
committed
Update trufflehog-scan.yml
1 parent 5907188 commit c38506c

File tree

1 file changed

+7
-6
lines changed

1 file changed

+7
-6
lines changed

.github/workflows/trufflehog-scan.yml

Lines changed: 7 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -60,17 +60,18 @@ jobs:
6060
6161
- name: Setup exclude config
6262
id: config
63+
env:
64+
DEFAULT_PATTERNS: ${{ env.DEFAULT_EXCLUDES }}
65+
USER_PATTERNS: ${{ vars.TRUFFLEHOG_EXCLUDES }}
6366
run: |
64-
# Always include default exclusions first
67+
# Write default exclusions
6568
echo "Adding default exclusions..."
66-
cat << 'EOF' > .trufflehog-ignore
67-
${{ env.DEFAULT_EXCLUDES }}
68-
EOF
69+
echo "$DEFAULT_PATTERNS" > .trufflehog-ignore
6970
7071
# Append user-defined exclusions if set (additive, not replacement)
71-
if [ -n "${{ vars.TRUFFLEHOG_EXCLUDES }}" ]; then
72+
if [ -n "$USER_PATTERNS" ]; then
7273
echo "Adding repo/org-level TRUFFLEHOG_EXCLUDES patterns..."
73-
echo "${{ vars.TRUFFLEHOG_EXCLUDES }}" | tr ',' '\n' | sed '/^$/d' >> .trufflehog-ignore
74+
echo "$USER_PATTERNS" | tr ',' '\n' | sed '/^$/d' >> .trufflehog-ignore
7475
fi
7576
7677
echo "Exclusion patterns:"

0 commit comments

Comments
 (0)