name: gitleaks on: push: branches: ['main'] tags: ['v*'] pull_request: permissions: contents: read jobs: gitleaks: runs-on: ubuntu-latest steps: - uses: actions/checkout@3df4ab11eba7bda6032a0b82a6bb43b11571feac # v3 with: fetch-depth: 0 - uses: gitleaks/gitleaks-action@v2 env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} GITLEAKS_LICENSE: ${{ secrets.GITLEAKS_LICENSE}} if: ${{ env.GITLEAKS_LICENSE != '' }}