14:23:08 Scan started
14:23:08 Repository: pollux-co/api-gateway
14:23:08 Size: 47891 KB
14:23:08 Cloning repository...
14:23:08 Requesting GitHub installation token...
14:23:09 Clone complete. Running Gitleaks (130+ rules)...
14:23:11 Scan complete. 22 findings detected.
14:23:11 [1/22] critical private-key deploy/keys/prod_rsa:1
14:23:11 [2/22] high aws-access-token .env.production:14
14:23:11 [3/22] high aws-access-token terraform/main.tf:38
14:23:11 [4/22] high github-pat .github/workflows/release.yml:62
14:23:11 [5/22] high slack-webhook-url scripts/notify.sh:7
14:23:11 [6/22] high private-key scripts/deploy/ssh_known_hosts:42
14:23:11 [7/22] medium generic-api-key config/secrets.yml:9
14:23:11 [8/22] medium generic-api-key .env.local:11
14:23:11 [9/22] medium generic-api-key docker-compose.yml:24
14:23:11 [10/22] medium generic-api-key .env.production:7
14:23:11 [11/22] medium aws-access-token internal/database/fixtures/db_seed.go:18
14:23:11 [12/22] medium stripe-access-token .env.production:21
14:23:11 [13/22] medium stripe-access-token config/billing_test.go:54
14:23:11 [14/22] medium github-pat .github/workflows/release.yml:88
14:23:11 [15/22] medium slack-webhook-url .github/workflows/release.yml:103
14:23:11 [16/22] medium generic-api-key scripts/seed_local.sh:32
14:23:11 [17/22] medium generic-api-key config/staging.yml:17
14:23:11 [18/22] medium generic-api-key config/secrets.yml:14
14:23:11 [19/22] medium generic-api-key helm/values.yaml:73
14:23:11 [20/22] medium generic-api-key scripts/migrate.sh:12
14:23:11 [21/22] medium generic-api-key Makefile:56
14:23:11 [22/22] medium generic-api-key cmd/server/init.go:21
14:23:11 Verifying detected credentials...
14:23:14 AWS REVOKED .env.production:14
14:23:14 AWS REVOKED terraform/main.tf:38
14:23:14 GitHub REVOKED .github/workflows/release.yml:62
14:23:14 GitHub REVOKED .github/workflows/release.yml:88
14:23:14 Slack REVOKED scripts/notify.sh:7
14:23:14 Slack REVOKED .github/workflows/release.yml:103
14:23:14 Stripe REVOKED .env.production:21
14:23:14 Stripe REVOKED config/billing_test.go:54
14:23:14 AWS REVOKED internal/database/fixtures/db_seed.go:18
14:23:14 Storing findings in database...
14:23:14 Done. 22 findings (9 active checks, all REVOKED) in 6244ms.
14:23:14 DONE 22 findings