From c866bb0bd46cc516490c9e6c950c29ec586d1b2d Mon Sep 17 00:00:00 2001 From: Jason Olinger Date: Mon, 2 Nov 2020 07:43:29 -0500 Subject: [PATCH 1/2] Add tartufo.toml --- tartufo.toml | 10 ++++++++++ 1 file changed, 10 insertions(+) create mode 100644 tartufo.toml diff --git a/tartufo.toml b/tartufo.toml new file mode 100644 index 0000000..9d429b5 --- /dev/null +++ b/tartufo.toml @@ -0,0 +1,10 @@ +[tool.tartufo] +exclude-paths="./exclude-patterns.txt" +repo-path = "." +default-regexes = true +json = false +regex = true +entropy = true +exclude-signatures = [ + "402ec8e908f251b4d651f9c871e83544d326ec5d8c1d3ae481ba768e53e4616d", +] From 684dd82ca52ea0e20592727991a2600c074bd983 Mon Sep 17 00:00:00 2001 From: Jason Olinger Date: Mon, 2 Nov 2020 07:45:19 -0500 Subject: [PATCH 2/2] Add exclusion patterns --- exclude-patterns.txt | 29 +++++++++++++++++++++++++++++ 1 file changed, 29 insertions(+) create mode 100644 exclude-patterns.txt diff --git a/exclude-patterns.txt b/exclude-patterns.txt new file mode 100644 index 0000000..1867b3a --- /dev/null +++ b/exclude-patterns.txt @@ -0,0 +1,29 @@ +resources/js/app.js +resources/vendor +(.*/)?autoload.php +sample.env +# Library Folders +node_modules +(.*/)?node_modules/ +vendor +(.*/)?vendor/ +# Lock Files are not always in the root +.*composer.lock +.*package.json +.*package-lock.json +.pnp.js +.*Pipfile.lock +.*yarn.lock +# Ignore inline images +.*\.css$ +.*\.scss$ +.*\.ico$ +.*\.jpg$ +.*\.png$ +.*\.svg$ +# Ignore uploaded logs +.*\.log$ +# Frontend Build Files +build +data +public/js/app.js