Skip to main content
Version: v0.35.0

secret-scan

No secrets or credentials should be embedded in the image.

ProviderLevelTags
secretsWarningsecurity

Messages

TypeMessage
PassNo secrets detected in the image.
FailTruffleHog detected ${results.secrets.secrets_count} secret(s) in the image.

Playbook Example

rules:
- provider: secrets
criterion: secret-scan

Condition

{
"==": [
{
"var": "results.secrets.secrets_count"
},
0
]
}