Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Temporarily removed gitleaks commit hoook #3483

Merged
merged 1 commit into from
Dec 15, 2021

Conversation

acoushawk
Copy link
Contributor

@acoushawk acoushawk commented Dec 15, 2021

This PR ...
Temporarily removes the gitleaks hook until we can determine the issues we are having with the current rules.

Test Steps:

  1. Commit and verify that gitleaks does not run.

Changes

  • Commented out gitleaks from the pre-commit runner script.

Checklist

Testing

  • Tested locally?
  • Ran ./prime test or ./gradlew testSmoke against local Docker ReportStream container?
  • (For Changes to /frontend-react/...) Ran npm run lint:write?
  • Added tests?

Process

  • Are there licensing issues with any new dependencies introduced?
  • Includes a summary of what a code reviewer should test/verify?
  • Updated the release notes?
  • Database changes are submitted as a separate PR?
  • DevOps team has been notified if PR requires ops support?

Pull reviewers stats

Stats for the last 30 days:

User Total reviews Median time to review Total comments
MauriceReeves-usds 44 46m 11
cwinters-usds 30 1h 46m 26
sean-usds 23 1h 11m 8
jimduff-usds 21 1d 8h 36m 15
kevinhaube 20 1h 34m 11
carlosfelix2 17 4h 34m 40
RickHawesUSDS 16 4h 9m 6
whytheplatypus 10 17h 22m 20
TomNUSDS 9 2h 26m 12
clediggins-usds 9 2h 26m 17
jorg3lopez 5 6h 49m 0
jbiskie 5 1h 26m 1
brick-green-agile6 4 1h 5m 3
JosiahSiegel 1 4m 2
ahay-agile6 1 2d 16h 45m 0
oslynn 1 2h 42m 0
MikeC-A6 1 7h 7m 3
rhood23699 1 14h 10m 0

@acoushawk acoushawk requested a review from a team as a code owner December 15, 2021 13:26
@sonarqubecloud
Copy link

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

Copy link
Contributor

@cwinters-usds cwinters-usds left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🍰

@acoushawk acoushawk merged commit 443d6c5 into master Dec 15, 2021
@acoushawk acoushawk deleted the hotfix/temp-remove-gitleaks branch December 15, 2021 13:29
carlosfelix2 added a commit that referenced this pull request Dec 15, 2021
* 3125 Moved fips-county table to the database (#3126)

* Moved fips-county table to the database

* Fixed unit tests

* Run integration tests with container

* Clear files after upload (#3355)

* Clear files after upload

* Change FileInput key to force reset

* Cleanup

* Correct reversed upload errors and warnings (#3359)

* added null check on originState

* add unit test for cliaForOutOFStateTesting

* Bump cypress from 9.1.0 to 9.1.1 in /frontend-react (#3317)

Bumps [cypress](https://github.com/cypress-io/cypress) from 9.1.0 to 9.1.1.
- [Release notes](https://github.com/cypress-io/cypress/releases)
- [Changelog](https://github.com/cypress-io/cypress/blob/develop/.releaserc.base.js)
- [Commits](cypress-io/cypress@v9.1.0...v9.1.1)

---
updated-dependencies:
- dependency-name: cypress
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

* VT - replaceValue for MSH-3-1 (#3370)

* MSH-3-1 added to HD field list

* replace MSH-3-1 value

* adds test case

* edits to serializer file

* ignored test case until it can be ran

* comments for ignored test case

* 3271 Added wait for API to be available to settings command (#3337)

* Added wait for API to settings

* Update Zip Codes (#3376)

* Fix 404 page copy for staging and production (#3377)

Since we renamed "build" -> "build:staging" and "build:production", the `"postbuild"` should also be renamed to "postbuild:staging" and "postbuild:production"

* addd tests for missing state, only provider state, and only ordering state

* 343 - Fixed the ValueSets Code: ">" for Markdown Table (#3204)

* 343 - Fixed the ValueSets Code: ">" for Markdown Table

Code: ">" in common.valuesets table hl70078 is the blockquote
markdown control character. We need to user "&#62;" (html code
symbol for ">" instead.

* Added Unit Test case for checking the &#62; (special character for >)

* How It Works bad path fix (#3384)

* Fixes 404 for How It Works and handles non-extended HIW paths

* adjusted the strings to conform with ktlint length

* changed away from sting builder

* Create FORM-NAME.yml

* fix errror with multiline string

* Bump org.flywaydb.flyway from 8.0.4 to 8.2.0 in /prime-router (#3261)

Bumps org.flywaydb.flyway from 8.0.4 to 8.2.0.

---
updated-dependencies:
- dependency-name: org.flywaydb.flyway
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump ktorVersion from 1.6.4 to 1.6.7 in /prime-router (#3353)

Bumps `ktorVersion` from 1.6.4 to 1.6.7.

Updates `ktor-client-core` from 1.6.4 to 1.6.7
- [Release notes](https://github.com/ktorio/ktor/releases)
- [Changelog](https://github.com/ktorio/ktor/blob/main/CHANGELOG.md)
- [Commits](https://github.com/ktorio/ktor/commits)

Updates `ktor-client-cio` from 1.6.4 to 1.6.7
- [Release notes](https://github.com/ktorio/ktor/releases)
- [Changelog](https://github.com/ktorio/ktor/blob/main/CHANGELOG.md)
- [Commits](https://github.com/ktorio/ktor/commits)

Updates `ktor-client-apache` from 1.6.4 to 1.6.7
- [Release notes](https://github.com/ktorio/ktor/releases)
- [Changelog](https://github.com/ktorio/ktor/blob/main/CHANGELOG.md)
- [Commits](https://github.com/ktorio/ktor/commits)

Updates `ktor-client-logging` from 1.6.4 to 1.6.7
- [Release notes](https://github.com/ktorio/ktor/releases)
- [Changelog](https://github.com/ktorio/ktor/blob/main/CHANGELOG.md)
- [Commits](https://github.com/ktorio/ktor/commits)

Updates `ktor-client-mock` from 1.6.4 to 1.6.7
- [Release notes](https://github.com/ktorio/ktor/releases)
- [Changelog](https://github.com/ktorio/ktor/blob/main/CHANGELOG.md)
- [Commits](https://github.com/ktorio/ktor/commits)

---
updated-dependencies:
- dependency-name: io.ktor:ktor-client-core
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: io.ktor:ktor-client-cio
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: io.ktor:ktor-client-apache
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: io.ktor:ktor-client-logging
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: io.ktor:ktor-client-mock
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump azure-core from 1.22.0 to 1.23.1 in /prime-router (#3352)

Bumps [azure-core](https://github.com/Azure/azure-sdk-for-java) from 1.22.0 to 1.23.1.
- [Release notes](https://github.com/Azure/azure-sdk-for-java/releases)
- [Commits](Azure/azure-sdk-for-java@azure-core_1.22.0...azure-core_1.23.1)

---
updated-dependencies:
- dependency-name: com.azure:azure-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump junit-jupiter-api from 5.8.1 to 5.8.2 in /prime-router (#3263)

Bumps [junit-jupiter-api](https://github.com/junit-team/junit5) from 5.8.1 to 5.8.2.
- [Release notes](https://github.com/junit-team/junit5/releases)
- [Commits](junit-team/junit5@r5.8.1...r5.8.2)

---
updated-dependencies:
- dependency-name: org.junit.jupiter:junit-jupiter-api
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rick Hawes <[email protected]>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump thymeleaf from 3.0.12.RELEASE to 3.0.14.RELEASE in /prime-router (#3354)

Bumps [thymeleaf](https://github.com/thymeleaf/thymeleaf) from 3.0.12.RELEASE to 3.0.14.RELEASE.
- [Release notes](https://github.com/thymeleaf/thymeleaf/releases)
- [Changelog](https://github.com/thymeleaf/thymeleaf/blob/3.0-master/ChangeLog.txt)
- [Commits](thymeleaf/thymeleaf@thymeleaf-3.0.12.RELEASE...thymeleaf-3.0.14.RELEASE)

---
updated-dependencies:
- dependency-name: org.thymeleaf:thymeleaf
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* consolidated variables

* removed trimIndent

* Fix unit tests (#3389)

- Fix all broken unit tests

* Added check for last modified time to settings CLI (#3403)

* Added check for last modified time to settings CLI

* Run automated checks on regular PR (NOT master or production) (#3404)

* Run automated checks on regular PR (NOT master or production)
* Remove unused includes

* Updated gitleaks version, commands, and flags (#3397)

* ...commit actually created by Matt Armstrong

Co-authored-by: Chris Winters <[email protected]>

* Remove the comment I accidentally kept in with previous (#3409)

* Update log4j due to security vulnerability (#3408)

* More about vulnerability: https://www.lunasec.io/docs/blog/log4j-zero-day/

* #3347 Allow specifying org for submission history (#3356)

* Allow specifying org for submission history

if authorized to see that organization

* Improve queryParam parsing

* Update submission smoke test url path

Co-authored-by: sean pennino <[email protected]>

* Jim/2314 payload name (#3201)

* Implemented new payloadName URL parameter

* Jim/1244 org filters (#3274)

* Rearchitected ReportStream's Filters:  Created Organization-level filters, new routingFilter, new processingMode filter, and defaults for all four filter types.

* Update issue templates

Added task to update customerStatus in settings

* Removed entropy scan (#3435)

Co-authored-by: Chris Winters <[email protected]>

* Fixing 2 bugs with token request (#3439)

* Admins can view submission history (#3441)

* Initial Submissions page setup

* Basic submissions fetch

* Submissions table

* Lint fixes

* Add title

* useState for submissions

* Bump @okta/okta-auth-js from 5.9.0 to 5.9.1 in /frontend-react (#3418)

Bumps [@okta/okta-auth-js](https://github.com/okta/okta-auth-js) from 5.9.0 to 5.9.1.
- [Release notes](https://github.com/okta/okta-auth-js/releases)
- [Changelog](https://github.com/okta/okta-auth-js/blob/master/CHANGELOG.md)
- [Commits](okta/okta-auth-js@okta-auth-js-5.9.0...okta-auth-js-5.9.1)

---
updated-dependencies:
- dependency-name: "@okta/okta-auth-js"
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: sean pennino <[email protected]>

* Bump typescript from 4.5.2 to 4.5.3 in /frontend-react (#3422)

Bumps [typescript](https://github.com/Microsoft/TypeScript) from 4.5.2 to 4.5.3.
- [Release notes](https://github.com/Microsoft/TypeScript/releases)
- [Commits](microsoft/TypeScript@v4.5.2...v4.5.3)

---
updated-dependencies:
- dependency-name: typescript
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: sean pennino <[email protected]>

* Add useEffect to prevent unnecessary submission fetches (#3459)

* Remove unncessary JSON parse

* Add useEffect

* Bump azure-core-http-netty from 1.11.2 to 1.11.4 in /prime-router (#3396)

Bumps [azure-core-http-netty](https://github.com/Azure/azure-sdk-for-java) from 1.11.2 to 1.11.4.
- [Release notes](https://github.com/Azure/azure-sdk-for-java/releases)
- [Commits](Azure/azure-sdk-for-java@azure-core-http-netty_1.11.2...azure-core-http-netty_1.11.4)

---
updated-dependencies:
- dependency-name: com.azure:azure-core-http-netty
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump bcpkix-jdk15on from 1.69 to 1.70 in /prime-router (#3398)

Bumps [bcpkix-jdk15on](https://github.com/bcgit/bc-java) from 1.69 to 1.70.
- [Release notes](https://github.com/bcgit/bc-java/releases)
- [Changelog](https://github.com/bcgit/bc-java/blob/master/docs/releasenotes.html)
- [Commits](https://github.com/bcgit/bc-java/commits)

---
updated-dependencies:
- dependency-name: org.bouncycastle:bcpkix-jdk15on
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump fuzzy-csv from 1.7.2 to 1.7.3 in /prime-router (#3400)

Bumps [fuzzy-csv](https://github.com/kayr/fuzzy-csv) from 1.7.2 to 1.7.3.
- [Release notes](https://github.com/kayr/fuzzy-csv/releases)
- [Commits](kayr/fuzzy-csv@1.7.2...1.7.3)

---
updated-dependencies:
- dependency-name: com.github.kayr:fuzzy-csv
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump @types/testing-library__jest-dom in /frontend-react (#3420)

Bumps [@types/testing-library__jest-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/testing-library__jest-dom) from 5.14.1 to 5.14.2.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/testing-library__jest-dom)

---
updated-dependencies:
- dependency-name: "@types/testing-library__jest-dom"
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: sean pennino <[email protected]>

* Bump libphonenumber from 8.12.38 to 8.12.39 in /prime-router (#3401)

Bumps [libphonenumber](https://github.com/google/libphonenumber) from 8.12.38 to 8.12.39.
- [Release notes](https://github.com/google/libphonenumber/releases)
- [Changelog](https://github.com/google/libphonenumber/blob/master/making-metadata-changes.md)
- [Commits](google/libphonenumber@v8.12.38...v8.12.39)

---
updated-dependencies:
- dependency-name: com.googlecode.libphonenumber:libphonenumber
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump commonmark from 0.18.0 to 0.18.1 in /prime-router (#3402)

Bumps [commonmark](https://github.com/commonmark/commonmark-java) from 0.18.0 to 0.18.1.
- [Release notes](https://github.com/commonmark/commonmark-java/releases)
- [Changelog](https://github.com/commonmark/commonmark-java/blob/main/CHANGELOG.md)
- [Commits](commonmark/commonmark-java@commonmark-parent-0.18.0...commonmark-parent-0.18.1)

---
updated-dependencies:
- dependency-name: org.commonmark:commonmark
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump jvm from 1.6.0 to 1.6.10 in /prime-router (#3465)

Bumps jvm from 1.6.0 to 1.6.10.

---
updated-dependencies:
- dependency-name: jvm
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump bcmail-jdk15on from 1.69 to 1.70 in /prime-router (#3466)

Bumps [bcmail-jdk15on](https://github.com/bcgit/bc-java) from 1.69 to 1.70.
- [Release notes](https://github.com/bcgit/bc-java/releases)
- [Changelog](https://github.com/bcgit/bc-java/blob/master/docs/releasenotes.html)
- [Commits](https://github.com/bcgit/bc-java/commits)

---
updated-dependencies:
- dependency-name: org.bouncycastle:bcmail-jdk15on
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump com.microsoft.azure.azurefunctions in /prime-router (#3467)

Bumps com.microsoft.azure.azurefunctions from 1.8.1 to 1.8.2.

---
updated-dependencies:
- dependency-name: com.microsoft.azure.azurefunctions
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump org.flywaydb.flyway from 8.2.0 to 8.2.2 in /prime-router (#3470)

Bumps org.flywaydb.flyway from 8.2.0 to 8.2.2.

---
updated-dependencies:
- dependency-name: org.flywaydb.flyway
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump kotlinVersion from 1.6.0 to 1.6.10 in /prime-router (#3473)

Bumps `kotlinVersion` from 1.6.0 to 1.6.10.

Updates `kotlin-stdlib-jdk8` from 1.6.0 to 1.6.10
- [Release notes](https://github.com/JetBrains/kotlin/releases)
- [Changelog](https://github.com/JetBrains/kotlin/blob/v1.6.10/ChangeLog.md)
- [Commits](JetBrains/kotlin@v1.6.0...v1.6.10)

Updates `kotlin-stdlib-common` from 1.6.0 to 1.6.10
- [Release notes](https://github.com/JetBrains/kotlin/releases)
- [Changelog](https://github.com/JetBrains/kotlin/blob/v1.6.10/ChangeLog.md)
- [Commits](JetBrains/kotlin@v1.6.0...v1.6.10)

Updates `kotlin-reflect` from 1.6.0 to 1.6.10
- [Release notes](https://github.com/JetBrains/kotlin/releases)
- [Changelog](https://github.com/JetBrains/kotlin/blob/v1.6.10/ChangeLog.md)
- [Commits](JetBrains/kotlin@v1.6.0...v1.6.10)

---
updated-dependencies:
- dependency-name: org.jetbrains.kotlin:kotlin-stdlib-jdk8
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.jetbrains.kotlin:kotlin-stdlib-common
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.jetbrains.kotlin:kotlin-reflect
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump json from 20210307 to 20211205 in /prime-router (#3476)

Bumps [json](https://github.com/douglascrockford/JSON-java) from 20210307 to 20211205.
- [Release notes](https://github.com/douglascrockford/JSON-java/releases)
- [Changelog](https://github.com/stleary/JSON-java/blob/master/docs/RELEASES.md)
- [Commits](https://github.com/douglascrockford/JSON-java/commits)

---
updated-dependencies:
- dependency-name: org.json:json
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump bcprov-jdk15on from 1.69 to 1.70 in /prime-router (#3475)

Bumps [bcprov-jdk15on](https://github.com/bcgit/bc-java) from 1.69 to 1.70.
- [Release notes](https://github.com/bcgit/bc-java/releases)
- [Changelog](https://github.com/bcgit/bc-java/blob/master/docs/releasenotes.html)
- [Commits](https://github.com/bcgit/bc-java/commits)

---
updated-dependencies:
- dependency-name: org.bouncycastle:bcprov-jdk15on
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

* Bump sendgrid-java from 4.8.0 to 4.8.1 in /prime-router (#3474)

Bumps [sendgrid-java](https://github.com/sendgrid/sendgrid-java) from 4.8.0 to 4.8.1.
- [Release notes](https://github.com/sendgrid/sendgrid-java/releases)
- [Changelog](https://github.com/sendgrid/sendgrid-java/blob/main/CHANGELOG.md)
- [Commits](sendgrid/sendgrid-java@4.8.0...4.8.1)

---
updated-dependencies:
- dependency-name: com.sendgrid:sendgrid-java
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump as2-lib from 4.8.0 to 4.9.0 in /prime-router (#3478)

Bumps [as2-lib](https://github.com/phax/as2-lib) from 4.8.0 to 4.9.0.
- [Release notes](https://github.com/phax/as2-lib/releases)
- [Commits](phax/as2-lib@as2-lib-parent-pom-4.8.0...as2-lib-parent-pom-4.9.0)

---
updated-dependencies:
- dependency-name: com.helger.as2:as2-lib
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Bump flyway-core from 8.2.0 to 8.2.2 in /prime-router (#3479)

Bumps [flyway-core](https://github.com/flyway/flyway) from 8.2.0 to 8.2.2.
- [Release notes](https://github.com/flyway/flyway/releases)
- [Commits](flyway/flyway@flyway-8.2.0...flyway-8.2.2)

---
updated-dependencies:
- dependency-name: org.flywaydb:flyway-core
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Maurice Reeves <[email protected]>

* Fixed bug that allowNone was missing from metadata list.  Added unit test (#3444)

* Fixes issue with the new truncation logic truncating fields it should not be (#3429)

* Fixes issue with the new truncation logic truncating fields it should not be

* Fixes typo

* Removed gitleaks for now (#3483)

* Update log4j dependency (again) due to refined handling of security vulnerability (#3484)

Co-authored-by: sean pennino <[email protected]>
Co-authored-by: Brick Green <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Jorge Lopez <[email protected]>
Co-authored-by: Rick Hood <[email protected]>
Co-authored-by: TomNUSDS <[email protected]>
Co-authored-by: OTT SATHNGAM <[email protected]>
Co-authored-by: Kevin Haube <[email protected]>
Co-authored-by: brick-green-agile6 <[email protected]>
Co-authored-by: Anshul Kumar <[email protected]>
Co-authored-by: Maurice Reeves <[email protected]>
Co-authored-by: Rick Hawes <[email protected]>
Co-authored-by: Matt Armstrong <[email protected]>
Co-authored-by: Chris Winters <[email protected]>
Co-authored-by: Chris Winters <[email protected]>
Co-authored-by: David Gage <[email protected]>
Co-authored-by: jimduff-usds <[email protected]>
Co-authored-by: Joel Biskie <[email protected]>
@RickHawesUSDS RickHawesUSDS self-requested a review December 15, 2021 17:46
@RickHawesUSDS
Copy link
Contributor

I also approved of this action. My reasoning is that GitLeaks was not working before, so this action does not reduce the effectiveness of this control. Will make it a priority to get a functional GitLeaks control in place.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants