From 12da1c4d5682ca4fab4a7b4a628b4b8b24159b8d Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 4 May 2026 12:58:45 +0000 Subject: [PATCH] ci(deps): bump trufflesecurity/trufflehog from 3.92.1 to 3.95.2 Bumps [trufflesecurity/trufflehog](https://github.com/trufflesecurity/trufflehog) from 3.92.1 to 3.95.2. - [Release notes](https://github.com/trufflesecurity/trufflehog/releases) - [Commits](https://github.com/trufflesecurity/trufflehog/compare/v3.92.1...v3.95.2) --- updated-dependencies: - dependency-name: trufflesecurity/trufflehog dependency-version: 3.95.2 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- .github/workflows/security.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 9fdd860..aa0eeb9 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -51,7 +51,7 @@ jobs: # trufflehog OSS is free, well-maintained, and integrates the same way. # Pinned to a versioned tag (NOT @main) so a malicious commit to the # action repo cannot land in our CI without an explicit version bump. - - uses: trufflesecurity/trufflehog@v3.92.1 + - uses: trufflesecurity/trufflehog@v3.95.2 with: path: ./ base: ${{ github.event.pull_request.base.sha || github.event.before }}