name: gitleaks on: push: branches: ['main'] tags: ['v*'] pull_request: permissions: contents: read jobs: gitleaks: runs-on: ubuntu-latest steps: - uses: actions/checkout@8e5e7e5ab8b370d6c329ec480221332ada57f0ab # v3 with: fetch-depth: 0 - uses: gitleaks/gitleaks-action@v2 env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} GITLEAKS_LICENSE: ${{ secrets.GITLEAKS_LICENSE}} if: ${{ env.GITLEAKS_LICENSE != '' }}