From 3fc9a351f5ebff8ac83cbee1955c329cda380794 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 8 Jun 2026 00:24:53 +0000 Subject: [PATCH] chore(ci): Bump trufflesecurity/trufflehog in the github-actions group Bumps the github-actions group with 1 update: [trufflesecurity/trufflehog](https://github.com/trufflesecurity/trufflehog). Updates `trufflesecurity/trufflehog` from 3.95.3 to 3.95.5 - [Release notes](https://github.com/trufflesecurity/trufflehog/releases) - [Commits](https://github.com/trufflesecurity/trufflehog/compare/v3.95.3...v3.95.5) --- updated-dependencies: - dependency-name: trufflesecurity/trufflehog dependency-version: 3.95.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions ... Signed-off-by: dependabot[bot] --- .github/workflows/secret-scan.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/secret-scan.yml b/.github/workflows/secret-scan.yml index 125ab2fd6..1da2643a8 100644 --- a/.github/workflows/secret-scan.yml +++ b/.github/workflows/secret-scan.yml @@ -29,7 +29,7 @@ jobs: fetch-depth: 0 # full history for diff + scheduled full scans - name: Scan for secrets - uses: trufflesecurity/trufflehog@v3.95.3 + uses: trufflesecurity/trufflehog@v3.95.5 with: # Report verified secrets and ones TruffleHog cannot verify. Tighten # to `--results=verified` if a fork finds the unknown class too noisy.