Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add option to ignore high entropy strings (like secrets) #1080

Closed
boris-smidt-klarrio opened this issue Aug 21, 2024 · 1 comment
Closed

Comments

@boris-smidt-klarrio
Copy link

boris-smidt-klarrio commented Aug 21, 2024

Dear,

We really like the typos tool its amazingly fast.

In our repo we have some encrypted strings and this gives the several false positives hits.
It might be useful to have a check to see how high the entropy is and then not to alert in that case.

for input:

# error: `Ue` should be `Use`, `Due`
9ywSLxirUeYg4NgXtO
# error: `abd` should be `and`
s-abd34f18avb514f9ac

In these cases i would expect it to detect that the string has a high entropy and it would skip reporting it.

@epage
Copy link
Collaborator

epage commented Aug 21, 2024

I believe this is a duplicate of #484. If there is a reason we should keep this open separately, let us know!

@epage epage closed this as not planned Won't fix, can't repro, duplicate, stale Aug 21, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants