version: 0.2 phases: pre_build: commands: - echo Setting CodeCommit Credentials - git config --global credential.helper '!aws codecommit credential-helper $@' - git config --global credential.UseHttpPath true - echo Copying secrets_config.json to the application directory - cp configs/secrets_config.json secrets_config.json - echo Switching to the application directory - echo Installing pip and truffleHog - curl https://bootstrap.pypa.io/get-pip.py -o get-pip.py - python get-pip.py - pip install truffleHog build: commands: - echo Build started on `date` - echo Scanning with truffleHog...$commituri - trufflehog --regex --rules secrets_config.json --entropy=False --max_depth 1 --exclude_paths ./configs/exclude-patterns.txt $commituri post_build: commands: - echo Build completed on `date`