From eaea9764cf1a804526cb960bb001a4c1f8c2d7df Mon Sep 17 00:00:00 2001 From: razreik Date: Wed, 23 Oct 2024 16:30:53 +0300 Subject: [PATCH 1/3] add detector --- checkov/secrets/runner.py | 1 + 1 file changed, 1 insertion(+) diff --git a/checkov/secrets/runner.py b/checkov/secrets/runner.py index 95ff7b58b58..690ffffe90a 100644 --- a/checkov/secrets/runner.py +++ b/checkov/secrets/runner.py @@ -122,6 +122,7 @@ def run( {'name': 'BasicAuthDetector'}, {'name': 'CloudantDetector'}, {'name': 'IbmCloudIamDetector'}, + {'name': 'IbmCosHmacDetector'}, {'name': 'JwtTokenDetector'}, {'name': 'MailchimpDetector'}, {'name': 'PrivateKeyDetector'}, From c968ad852d95f603623d2029692bc1389a87479c Mon Sep 17 00:00:00 2001 From: razreik Date: Wed, 30 Oct 2024 12:34:09 +0200 Subject: [PATCH 2/3] add secret to uuid form --- checkov/secrets/runner.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/checkov/secrets/runner.py b/checkov/secrets/runner.py index 690ffffe90a..f4ec814b543 100644 --- a/checkov/secrets/runner.py +++ b/checkov/secrets/runner.py @@ -231,7 +231,7 @@ def run( self.pbar.close() secret_records: dict[str, SecretsRecord] = {} - secrets_in_uuid_form = ['CKV_SECRET_116', 'CKV_SECRET_30'] + secrets_in_uuid_form = ['CKV_SECRET_116', 'CKV_SECRET_48', 'CKV_SECRET_30'] for key, secret in secrets: check_id = secret.check_id if secret.check_id else SECRET_TYPE_TO_ID.get(secret.type) if not check_id: From a22337cea8e8e3dce6653e123901d2c7a6c4bc59 Mon Sep 17 00:00:00 2001 From: razreik Date: Wed, 30 Oct 2024 12:51:00 +0200 Subject: [PATCH 3/3] add secret to uuid form --- checkov/secrets/runner.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/checkov/secrets/runner.py b/checkov/secrets/runner.py index f4ec814b543..d6c61a141e5 100644 --- a/checkov/secrets/runner.py +++ b/checkov/secrets/runner.py @@ -231,7 +231,7 @@ def run( self.pbar.close() secret_records: dict[str, SecretsRecord] = {} - secrets_in_uuid_form = ['CKV_SECRET_116', 'CKV_SECRET_48', 'CKV_SECRET_30'] + secrets_in_uuid_form = ['CKV_SECRET_116', 'CKV_SECRET_48', 'CKV_SECRET_40', 'CKV_SECRET_30'] for key, secret in secrets: check_id = secret.check_id if secret.check_id else SECRET_TYPE_TO_ID.get(secret.type) if not check_id: