Skip to content

Feedback to credential detection in user secrets scanning #112635

Answered by aashah
ecki asked this question in Code Security
Discussion options

You must be logged in to vote

Hey @ecki,

Sorry for the late reply. Thanks for sharing this. It is indeed a false-positive, and a mistake we made when we started releasing a handful of features dedicated for open-source repositories (such as push protection + secret scanning for all).

We're working on a fix to just go ahead and delete these false-positives altogether.

Sorry about the spam! 😢
Aakash

Replies: 2 comments

This comment was marked as off-topic.

Comment options

You must be logged in to vote
0 replies
Answer selected by ecki
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Secret Scanning Code Security Build security into your GitHub workflow with features to keep your codebase secure Product Feedback
3 participants