Provide a warning and remediation suggestion when NO secret patterns are defined
Open
- Dominant language
- Shell
- Stars
- 13.4k
- Forks
- 1.3k
- PR merge metrics
- No merged PRs in 30d
Description
This tool is useful, but because patterns need to be defined in the repo it would be nice if the tool alerted the end-user when NO secret patterns are defined since this can lead to false positives, simply because someone missed a setup step that is detectable.
Contributor guide
Research direction
No files, tests, or entry points are named. Begin by locating where repository secret patterns are loaded, then determine how to detect that none are defined and where a user-facing warning can be emitted; done means the warning includes a remediation suggestion for the missing setup.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- shell
- Domain
- cli, security
- Issue type
- Feature
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 42/100