CI: restore main detect-secrets scan (#38438)

* Tests: stabilize detect-secrets fixtures

* Tests: fix rebased detect-secrets false positives

* Docs: keep snippets valid under detect-secrets

* Tests: finalize detect-secrets false-positive fixes

* Tests: reduce detect-secrets false positives

* Tests: keep detect-secrets pragmas inline

* Tests: remediate next detect-secrets batch

* Tests: tighten detect-secrets allowlists

* Tests: stabilize detect-secrets formatter drift
This commit is contained in:
Vincent Koc
2026-03-07 13:06:35 -05:00
committed by GitHub
parent 46e324e269
commit e4d80ed556
137 changed files with 1231 additions and 2700 deletions

View File

@@ -395,8 +395,8 @@ describe("handleLineWebhookEvents", () => {
account: {
accountId: "work",
enabled: true,
channelAccessToken: "token-work",
channelSecret: "secret-work",
channelAccessToken: "token-work", // pragma: allowlist secret
channelSecret: "secret-work", // pragma: allowlist secret
tokenSource: "config",
config: { dmPolicy: "pairing" },
},

View File

@@ -176,7 +176,7 @@ describe("buildLineMessageContext", () => {
});
it("group peer binding matches raw groupId without prefix (#21907)", async () => {
const groupId = "Cc7e3bece1234567890abcdef";
const groupId = "Cc7e3bece1234567890abcdef"; // pragma: allowlist secret
const bindingCfg: OpenClawConfig = {
session: { store: storePath },
agents: {

View File

@@ -88,7 +88,7 @@ describe("monitorLineProvider lifecycle", () => {
const task = monitorLineProvider({
channelAccessToken: "token",
channelSecret: "secret",
channelSecret: "secret", // pragma: allowlist secret
config: {} as OpenClawConfig,
runtime: {} as RuntimeEnv,
abortSignal: abort.signal,
@@ -115,7 +115,7 @@ describe("monitorLineProvider lifecycle", () => {
await monitorLineProvider({
channelAccessToken: "token",
channelSecret: "secret",
channelSecret: "secret", // pragma: allowlist secret
config: {} as OpenClawConfig,
runtime: {} as RuntimeEnv,
abortSignal: abort.signal,
@@ -129,7 +129,7 @@ describe("monitorLineProvider lifecycle", () => {
const monitor = await monitorLineProvider({
channelAccessToken: "token",
channelSecret: "secret",
channelSecret: "secret", // pragma: allowlist secret
config: {} as OpenClawConfig,
runtime: {} as RuntimeEnv,
});