Skip to content

Update secret detection config

rossfuhrman requested to merge update-secret-detection-config into master

What does this MR do?

Update the secret detection job config to better match our vendored templates as well as update how the secret detection jobs are reported.

Screenshots (strongly suggested)

This screenshot shows the over-all move to the new Secret Detection Job Type. The theory is that a significant part of the usage of the SAST Secret Template is coming from the GitLab project.

Screen_Shot_2020-11-11_at_11.22.16_AM

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • Label as security and @ mention @gitlab-com/gl-security/appsec
  • The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • Security reports checked/validated by a reviewer from the AppSec team
Edited by rossfuhrman

Merge request reports