Skip to content

.secrets.baseline referenced by the detect-secrets pre-commit hook does not exist - hook errors on every run #1211

Description

@nanaf6203-bit

Context: .pre-commit-config.yaml runs detect-secrets with --baseline .secrets.baseline; the file ls confirms is absent from the repo root.

Problem: pre-commit will fail (or run un-baselined) on every invocation: either the baseline is missing so the hook errors, or secrets already committed never get baselined - the hook's value is nil and developers hit a failing gate.

Proposed approach: Create .secrets.baseline (empty or with audited findings) and commit it, or drop the --baseline arg + hook until secrets scanning is intentional; document the expected baseline workflow.

Acceptance criteria: pre-commit run detect-secrets passes; baseline file exists and matches repo scan.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

Stellar WaveIssues in the Stellar wave programTrivial ComplexitybugSomething isn't workingchorechore related issues

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions