Open
Conversation
cd4c3dc to
859d735
Compare
BradLeeCB
pushed a commit
that referenced
this pull request
Oct 22, 2025
doc: navigate to the correct location
[Fix] Change credential encryption to only affect db credentials
…14.1 - Fix CVE-2025-68113: Update altcha-lib from 1.3.0 to 1.4.1 - Fix CVE-2025-15284: Update qs from 6.13.0 to 6.14.1 - Add overrides and resolutions to enforce fixed versions
…and qs to 6.14.1 - Fix GHSA-5j59-xgg2-r9c4 and GHSA-mwv6-3258-q52c: Update next from 14.2.33 to 14.2.35 - Fix CVE-2025-15284: Update qs from 6.13.0 to 6.14.1 - Add override for qs to enforce fixed version
- Add run_secret_detection() call to main() function - Install ggshield upfront for consistency with other tools - Secret detection scans will now run as part of the security scan workflow
… with no fix available
- Add patterns to ignore all test files (Python and TypeScript) - Add patterns for common test fixtures and mock data - Ignore Jupyter notebooks and example config files - Simplify and clean up comments for better maintainability
- Remove complex regex patterns that GitGuardian doesn't support - Keep simple string patterns and SHA256 hashes - Test files are already excluded via ignored_paths
…xample patterns - Replace sk-02Wr4IAlN3NvPXvL5JVvDA with sk-example-... in key_management_endpoints.py - Replace sk-Fn8Ej39NkBQmUagFEoUWPQ with sk-example-... in spend_management_endpoints.py - Add SHA256 hashes to ignore mock data in cache_dashboard.tsx comments
…mments with example patterns - Replace high-entropy mock API keys in comments with sk-example-... pattern - Remove unnecessary gitguardian ignore entries for bad practices
- Fixes GHSA-hp6r-r9vc-q8wx (CSRF vulnerability, CVSS 6.3) - Update in both pyproject.toml and requirements.txt
- Add typing-extensions>=4.14.1 to pyproject.toml, requirements.txt, and .circleci/requirements.txt - Required by pydantic-core which needs Sentinel from typing_extensions - Also update fastapi-sso to 0.19.0 in .circleci/requirements.txt to match previous fix - Fixes ImportError: cannot import name 'Sentinel' from 'typing_extensions'
859d735 to
07b086b
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Auto-generated migration based on schema.prisma changes.
Generated files: