Skip to content

chore(ci): repoint push-email-notify to smtp-notify-action (#47) #97

chore(ci): repoint push-email-notify to smtp-notify-action (#47)

chore(ci): repoint push-email-notify to smtp-notify-action (#47) #97

# SPDX-License-Identifier: MPL-2.0
# Calls the estate's shared secret scanner (gitleaks + rust-secrets +
# shell-secrets). Replaces an inline trufflehog job: trufflehog was retired
# estate-wide as redundant, and this repo had no other leak scanning, so the
# scanner is UPGRADED here rather than removed.
#
# `secrets: inherit` is REQUIRED — without it the gitleaks action's inner
# secrets.GITHUB_TOKEN is empty and the scan silently degrades.
name: 'Secret Scanner'
on:
pull_request:
push:
branches: [main, master]
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
permissions:
contents: read
jobs:
scan:
uses: hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@7fdc2705df74b4e352d2a1cde3e87a5923fdf329

Check failure on line 21 in .github/workflows/secret-scanner.yml

View workflow run for this annotation

GitHub Actions / .github/workflows/secret-scanner.yml

Invalid workflow file

error parsing called workflow ".github/workflows/secret-scanner.yml" -> "hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@7fdc2705df74b4e352d2a1cde3e87a5923fdf329" : workflow was not found. See https://docs.github.com/actions/learn-github-actions/reusing-workflows#access-to-reusable-workflows for more information.
secrets: inherit