Skip to content

fix(deps): update kubernetes packages to v0.35.2 #56

fix(deps): update kubernetes packages to v0.35.2

fix(deps): update kubernetes packages to v0.35.2 #56

name: TruffleHog Secret Scanning
# This workflow is designed to be enforced org-wide via GitHub rulesets
# It calls the reusable TruffleHog workflow with sensible defaults for org-wide deployment
on:
pull_request:
types: [opened, synchronize, reopened]
push:
branches:
- main
merge_group:
types: [checks_requested]
permissions:
contents: read
pull-requests: write
checks: write
jobs:
secret-scan:
name: TruffleHog Secret Scan
uses: grafana/security-github-actions/.github/workflows/reusable-trufflehog.yml@main
with:
# Fail on verified secrets - blocking mode
fail-on-verified: "false" # Block on verified secrets
fail-on-unverified: "false" # Don't block on unverified secrets
runs-on: ${{ !github.event.repository.private && 'ubuntu-latest' || 'ubuntu-arm64-small' }} # Use same runner pattern as zizmor
secrets: inherit