| Server IP : 188.151.22.197 / Your IP : 216.73.217.74 Web Server : Apache/2.4.62 (Rocky Linux) OpenSSL/3.5.5 System : Linux wsten.se 5.14.0-687.30.1.el9_8.x86_64 #1 SMP PREEMPT_DYNAMIC Mon Jul 27 13:09:21 UTC 2026 x86_64 User : apache ( 48) PHP Version : 8.1.32 Disable Function : NONE MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : OFF | Sudo : ON | Pkexec : ON Directory : /opt/gitlab/embedded/service/gitlab-rails/scripts/ |
Upload File : |
#!/usr/bin/env bash
set -euo pipefail
SCRIPT_DIR="$(cd "$(dirname "${BASH_SOURCE[0]}")" && pwd)"
CONFIG_DIR="$SCRIPT_DIR/../config"
CI_CONFIG="$CONFIG_DIR/gitleaks.toml"
LOCAL_CONFIG="$CONFIG_DIR/gitleaks-local.toml"
DRY_RUN=false
if [ "${1:-}" == "--dry-run" ]; then
DRY_RUN=true
fi
generate_config() {
cat << 'HEADER'
# AUTO-GENERATED - DO NOT EDIT
# Usage: This is used for running `gitleaks` locally via `lefthook`.
# Source: config/gitleaks.toml
# Regenerate: scripts/generate-gitleaks-local-config.sh
title = "Local gitleaks config - extends gitleaks default ruleset"
[extend]
useDefault = true
# Disabled rules (false positives in doc/api/openapi/openapi_v3.yaml)
disabledRules = ["sourcegraph-access-token"]
HEADER
sed -n '/^\[allowlist\]/,$p' "$CI_CONFIG"
}
if [ "$DRY_RUN" == "true" ]; then
generate_config
else
generate_config > "$LOCAL_CONFIG"
echo "Generated: $LOCAL_CONFIG"
fi