Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add severity for each finding #3802

Open
roisec opened this issue Dec 19, 2024 · 2 comments
Open

Add severity for each finding #3802

roisec opened this issue Dec 19, 2024 · 2 comments

Comments

@roisec
Copy link

roisec commented Dec 19, 2024

Description
Add a severity level (e.g., Low, Medium, High, Critical) to each finding to help prioritize remediation efforts.

Preferred Solution
Include a severity field in the output based on the type of secret and its impact. Example: Critical/high/medium

Additional Context
This will improve triaging and integration with CI/CD pipelines.

@kashifkhan0771
Copy link
Contributor

I like the idea, but I am thinking about on what basis TruffleHog will assign severity?

@roisec
Copy link
Author

roisec commented Dec 23, 2024

Based on the risk of the relevant secret

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Development

No branches or pull requests

2 participants