Skip to content

Commit 07385ea

Browse files
Merge branch 'main' into dependabot/cargo/bots/echidnabot/cargo-e5cdbc99ac
2 parents edcd564 + 3fe2cdd commit 07385ea

7 files changed

Lines changed: 19 additions & 21 deletions

File tree

‎.github/workflows/governance.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -34,4 +34,4 @@ permissions:
3434

3535
jobs:
3636
governance:
37-
uses: hyperpolymath/standards/.github/workflows/governance-reusable.yml@bd0df9ead7faf0cdfe0e13e7966d91e28d0101d4 # main 2026-06-27
37+
uses: hyperpolymath/standards/.github/workflows/governance-reusable.yml@571cc734cd69fb846032ec77a662aa8ee4fc32cd # main 2026-06-27

‎.github/workflows/hypatia-scan.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -30,7 +30,7 @@ permissions:
3030

3131
jobs:
3232
hypatia:
33-
uses: hyperpolymath/standards/.github/workflows/hypatia-scan-reusable.yml@bd0df9ead7faf0cdfe0e13e7966d91e28d0101d4
33+
uses: hyperpolymath/standards/.github/workflows/hypatia-scan-reusable.yml@571cc734cd69fb846032ec77a662aa8ee4fc32cd
3434
secrets: inherit
3535
# Total caller-side wall-clock cap for the reusable. Matches
3636
# Hypatia's `missing_timeout_minutes` rule expectation. The scan is

‎.github/workflows/mirror.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,5 +14,5 @@ permissions:
1414

1515
jobs:
1616
mirror:
17-
uses: hyperpolymath/standards/.github/workflows/mirror-reusable.yml@bd0df9ead7faf0cdfe0e13e7966d91e28d0101d4
17+
uses: hyperpolymath/standards/.github/workflows/mirror-reusable.yml@571cc734cd69fb846032ec77a662aa8ee4fc32cd
1818
secrets: inherit

‎.github/workflows/scorecard.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,5 +15,5 @@ jobs:
1515
permissions:
1616
security-events: write
1717
id-token: write
18-
uses: hyperpolymath/standards/.github/workflows/scorecard-reusable.yml@bd0df9ead7faf0cdfe0e13e7966d91e28d0101d4
18+
uses: hyperpolymath/standards/.github/workflows/scorecard-reusable.yml@571cc734cd69fb846032ec77a662aa8ee4fc32cd
1919
secrets: inherit

‎.github/workflows/secret-scanner.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,5 +22,5 @@ jobs:
2222
contents: read
2323
pull-requests: write
2424
actions: read
25-
uses: hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@bd0df9ead7faf0cdfe0e13e7966d91e28d0101d4
25+
uses: hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@571cc734cd69fb846032ec77a662aa8ee4fc32cd
2626
secrets: inherit

‎bots/cipherbot/src/analyzers/infra.rs‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -186,7 +186,7 @@ mod tests {
186186
#[test]
187187
fn test_detect_hardcoded_cred() {
188188
let analyzer = InfraAnalyzer;
189-
let content = r#"password = "SuperSecretPass123!""#;
189+
let content = r#"password = "SuperSecretPass123!""#; // scanner-allow: rust-secrets
190190
let usages = analyzer.analyze_content(Path::new("infra/main.tf"), content);
191191
assert!(!usages.is_empty(), "Should detect hardcoded credential");
192192
assert_eq!(usages[0].status, CryptoStatus::Reject);
@@ -204,7 +204,7 @@ mod tests {
204204
#[test]
205205
fn test_skip_non_infra_file() {
206206
let analyzer = InfraAnalyzer;
207-
let content = r#"password = "SuperSecretPass123!""#;
207+
let content = r#"password = "SuperSecretPass123!""#; // scanner-allow: rust-secrets
208208
let usages = analyzer.analyze_content(Path::new("src/main.rs"), content);
209209
assert!(usages.is_empty(), "Should skip non-IaC files");
210210
}

‎robot-repo-automaton/src/fixer.rs‎

Lines changed: 12 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -1,14 +1,12 @@
1-
@@
2-
- content
3-
- .replace("gitbot-fleet", repo_name)
4-
- .replace("{{LICENSE}}", "MPL-2.0")
5-
- .replace("{{YEAR}}", &year)
6-
- .replace("{{AUTHOR}}", "Jonathan D.A. Jewell")
7-
- .replace("{{EMAIL}}", "j.d.a.jewell@open.ac.uk");
8-
+ content
9-
+ .replace("gitbot-fleet", repo_name)
10-
+ .replace("{{LICENSE}}", "MPL-2.0")
11-
+ .replace("{{YEAR}}", &year)
12-
+ .replace("{{AUTHOR}}", "Jonathan D.A. Jewell")
13-
+ .replace("{{EMAIL}}", "j.d.a.jewell@open.ac.uk")
14-
@@
1+
content
2+
.replace("gitbot-fleet", repo_name)
3+
.replace("{{LICENSE}}", "MPL-2.0")
4+
.replace("{{YEAR}}", &year)
5+
.replace("{{AUTHOR}}", "Jonathan D.A. Jewell")
6+
.replace("{{EMAIL}}", "j.d.a.jewell@open.ac.uk");
7+
content
8+
.replace("gitbot-fleet", repo_name)
9+
.replace("{{LICENSE}}", "MPL-2.0")
10+
.replace("{{YEAR}}", &year)
11+
.replace("{{AUTHOR}}", "Jonathan D.A. Jewell")
12+
.replace("{{EMAIL}}", "j.d.a.jewell@open.ac.uk")

0 commit comments

Comments
 (0)