Gate: no-secret-leaked
No secret (key, token, credential) enters the history.
| Property | Value |
|---|---|
| Command | gitleaks git --no-banner --redact -v |
| Confronts | code |
| Blocking by default — new project | yes |
| Blocking by default — existing project | yes |
Declaring it
Section titled “Declaring it”gates: - name: no-secret-leaked on: [code] run: "gitleaks git --no-banner --redact -v"