/
githubmirror
/
gitleaks
Обзор
Документация
Войти
/
githubmirror
/
gitleaks
Код
Задачи
Вики
Пакеты
0
Релизы
0
Аналитика
Безопасность
master
report_templates/basic.tmpl
760 строк
26 KB
Zach
report templates
03 мар 2025, 05:41
03 мар 2025, 05:41
e9b93c6
Код
Авторство
О чём код?
<!DOCTYPE html> <html lang="en"> <head> <meta charset="UTF-8"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <title>Gitleaks Security Findings Report</title> <style> :root { --primary-color: #2563eb; --primary-color-rgb: 37, 99, 235; --primary-dark: #1d4ed8; --primary-light: #3b82f6; --secondary-color: #f3f4f6; --surface-color: #ffffff; --border-color: #e5e7eb; --text-color: #374151; --text-light: #6b7280; --text-inverse: #ffffff; --error-color: #ef4444; --warning-color: #f59e0b; --success-color: #10b981; --highlight-color: rgba(255, 255, 0, 0.2); --highlight-secret: rgba(239, 68, 68, 0.2); --shadow: 0 1px 3px rgba(0, 0, 0, 0.1); --radius: 0; --font-mono: 'Fira Code', 'IBM Plex Mono', 'Source Code Pro', monospace; --font-main: 'IBM Plex Sans', 'Roboto Mono', monospace; } body.dark-mode { --primary-color: #1e40af; --primary-dark: #1e3a8a; --primary-light: #3b82f6; --secondary-color: #1f2937; --surface-color: #111827; --border-color: #374151; --text-color: #f3f4f6; --text-light: #9ca3af; --text-inverse: #111827; --highlight-color: rgba(255, 255, 0, 0.3); --highlight-secret: rgba(255, 99, 99, 0.3); } * { margin: 0; padding: 0; box-sizing: border-box; } html, body { height: 100%; font-family: var(--font-main); font-size: 16px; line-height: 1.5; color: var(--text-color); background-color: var(--surface-color); } .app-container { display: flex; flex-direction: column; height: 100%; max-width: 100%; overflow: hidden; } .app-header { height: 60px; background-color: var(--primary-color); color: var(--text-inverse); display: flex; align-items: center; justify-content: space-between; padding: 0 1.5rem; flex-shrink: 0; box-shadow: var(--shadow); z-index: 10; } .logo h1 { font-size: 1.5rem; font-weight: 600; } .header-actions { display: flex; align-items: center; gap: 0.5rem; } .btn { display: inline-flex; align-items: center; justify-content: center; padding: 0.5rem 1rem; border-radius: var(--radius); font-size: 0.875rem; font-weight: 500; cursor: pointer; transition: background-color 0.2s, color 0.2s; border: none; font-family: var(--font-main); } .btn-primary { background-color: var(--primary-color); color: var(--text-inverse); } .btn-primary:hover { background-color: var(--primary-dark); } .btn-sm { padding: 0.25rem 0.5rem; font-size: 0.75rem; } .app-main { flex: 1; overflow: auto; padding: 1.5rem; } .report-info { margin-bottom: 1.5rem; padding: 1rem; background-color: var(--secondary-color); border-radius: var(--radius); border: 1px solid var(--border-color); } .report-date { font-size: 0.875rem; color: var(--text-light); } .report-stats { display: flex; gap: 1.5rem; margin-top: 1rem; flex-wrap: wrap; } .stat-item { display: flex; flex-direction: column; gap: 0.25rem; } .stat-value { font-size: 1.25rem; font-weight: 600; } .stat-label { font-size: 0.875rem; color: var(--text-light); } .table-wrapper { overflow-x: auto; border: 1px solid var(--border-color); border-radius: var(--radius); } .findings-table { width: 100%; border-collapse: collapse; font-size: 0.875rem; } .findings-table th { background-color: var(--secondary-color); padding: 0.75rem; text-align: left; font-weight: 500; position: sticky; top: 0; z-index: 1; } /* Ensure table cells don't expand too much */ .findings-table td { padding: 0.75rem; border-top: 1px solid var(--border-color); vertical-align: top; max-width: 300px; /* Limit width of all cells */ overflow-wrap: break-word; } .findings-table tr:hover td { background-color: var(--secondary-color); } .findings-table th:nth-child(1) { width: 12%; } /* Rule */ .findings-table th:nth-child(2) { width: 20%; } /* File */ .findings-table th:nth-child(3) { width: 25%; } /* Description */ .findings-table th:nth-child(4) { width: 20%; } /* Secret */ .findings-table th:nth-child(5) { width: 23%; } /* Metadata */ .findings-table td { padding: 0.75rem; border-top: 1px solid var(--border-color); vertical-align: top; } .findings-table tr:hover td { background-color: var(--secondary-color); } .secret-container { position: relative; } .match-toggle { display: inline-block; margin-top: 0.5rem; padding: 0.25rem 0.5rem; background-color: var(--secondary-color); border: 1px solid var(--border-color); border-radius: var(--radius); font-size: 0.75rem; cursor: pointer; color: var(--primary-color); } .match-toggle:hover { background-color: var(--primary-color); color: var(--text-inverse); } .hidden { display: none !important; } .secret-match { font-family: var(--font-mono); font-size: 0.875rem; word-break: break-all; white-space: pre-wrap; display: block; background-color: var(--highlight-secret); padding: 0.5rem; border-radius: var(--radius); overflow-x: auto; } .tag-list { display: flex; gap: 0.25rem; flex-wrap: wrap; } .tag { display: inline-block; padding: 0.125rem 0.375rem; background-color: var(--primary-light); color: var(--text-inverse); border-radius: 2px; font-size: 0.75rem; } .meta-row { display: grid; grid-template-columns: repeat(auto-fill, minmax(200px, 1fr)); gap: 0.5rem; margin-top: 0.5rem; font-size: 0.75rem; color: var(--text-light); } .meta-item { display: flex; align-items: center; gap: 0.25rem; } .meta-label { font-weight: 500; } .meta-value { font-family: var(--font-mono); word-break: break-all; } .code-preview { position: relative; font-family: var(--font-mono); font-size: 0.875rem; background-color: var(--secondary-color); padding: 0.5rem; border-radius: var(--radius); overflow-x: auto; margin-top: 0.5rem; white-space: pre-wrap; word-break: break-all; } .filters { display: flex; gap: 1rem; margin-bottom: 1rem; flex-wrap: wrap; } .filter-group { display: flex; align-items: center; gap: 0.5rem; } .filter-label { font-size: 0.875rem; font-weight: 500; } .filter-input { padding: 0.375rem 0.75rem; border: 1px solid var(--border-color); border-radius: var(--radius); font-size: 0.875rem; font-family: var(--font-main); } .app-footer { height: 40px; padding: 0 1.5rem; display: flex; align-items: center; justify-content: space-between; border-top: 1px solid var(--border-color); font-size: 0.75rem; color: var(--text-light); flex-shrink: 0; } @media (max-width: 768px) { .app-header { padding: 0 1rem; } .app-main { padding: 1rem; } .report-stats { flex-direction: column; gap: 0.75rem; } .filters { flex-direction: column; gap: 0.75rem; } .app-footer { flex-direction: column; height: auto; padding: 0.75rem 1rem; gap: 0.5rem; justify-content: center; text-align: center; } } .description-toggle { cursor: pointer; color: var(--primary-color); font-size: 0.875rem; margin-left: 0.5rem; display: inline-flex; align-items: center; justify-content: center; width: 20px; height: 20px; border-radius: 50%; background-color: var(--secondary-color); vertical-align: middle; } .description-toggle:hover { background-color: var(--primary-light); color: var(--text-inverse); } .description-expanded { white-space: normal; } .description-collapsed { white-space: nowrap; overflow: hidden; text-overflow: ellipsis; max-width: 250px; display: inline-block; } .commit-link { color: var(--primary-color); text-decoration: none; } .commit-link:hover { text-decoration: underline; } /* File path styling */ .file-path-container { max-width: 100%; } .file-path { display: inline-block; max-width: 100%; word-wrap: break-word; word-break: break-all; } .match-content { font-family: var(--font-mono); font-size: 0.875rem; word-break: break-all; white-space: pre-wrap; display: block; background-color: var(--secondary-color); padding: 0.5rem; border-radius: var(--radius); margin-top: 0.5rem; max-height: 300px; overflow-y: auto; } .dark-mode-toggle { background: none; border: none; color: var(--text-inverse); cursor: pointer; font-size: 1rem; } </style> </head> <body> <div class="app-container"> <header class="app-header"> <div class="logo"> <h1>Gitleaks Security Findings</h1> </div> <div class="header-actions"> <button class="dark-mode-toggle" id="darkModeToggle">🌓</button> </div> </header> <main class="app-main"> <div class="report-info"> <h2>Security Scan Report</h2> <p class="report-date">Generated on {{now | date "Jan 02, 2006 15:04:05 MST"}}</p> <div class="report-stats"> <div class="stat-item"> <span class="stat-value">{{len .}}</span> <span class="stat-label">Total Findings</span> </div> <div class="stat-item"> <span class="stat-value" id="filesCount">-</span> <span class="stat-label">Files Affected</span> </div> <div class="stat-item"> <span class="stat-value" id="rulesCount">-</span> <span class="stat-label">Unique Rules Triggered</span> </div> <div class="stat-item" id="scanModeContainer"> <span class="stat-value" id="scanMode">-</span> <span class="stat-label">Scan Mode</span> </div> </div> </div> <div class="filters"> <div class="filter-group"> <label class="filter-label" for="filterRule">Filter by Rule:</label> <select class="filter-input" id="filterRule"> <option value="all">All Rules</option> <!-- Rule options will be populated by JavaScript --> </select> </div> <div class="filter-group"> <label class="filter-label" for="filterFile">Filter by File:</label> <input type="text" class="filter-input" id="filterFile" placeholder="Enter filename..."> </div> <div class="filter-group"> <button class="btn btn-primary btn-sm" id="resetFilters">Reset Filters</button> </div> </div> <div class="table-wrapper"> <table class="findings-table" id="findingsTable"> <thead> <tr> <th>Rule</th> <th>File</th> <th>Description</th> <th>Secret</th> <th>Metadata</th> </tr> </thead> <tbody> {{- range . }} <tr data-rule="{{.RuleID}}" data-file="{{.File}}"> <td>{{.RuleID}}</td> <td> <div class="file-path-container"> <span class="file-path" title="{{.File}}">{{.File}}</span> </div> <div class="tag-list"> {{- range .Tags }} <span class="tag">{{.}}</span> {{- end}} </div> <div class="meta-row"> <div class="meta-item"> <span class="meta-label">Line:</span> <span class="meta-value">{{.StartLine}}</span> </div> </div> </td> <td> <span class="description-text">{{.Description}}</span> <span class="description-toggle" title="Expand/Collapse">↕</span> </td> <td> <div class="secret-container" data-secret="{{.Secret}}" data-match="{{.Match}}"> <div class="secret-match">{{.Secret}}</div> <button type="button" class="match-toggle" title="Show/Hide Full Match Context">Show Context</button> <div class="match-content hidden" data-raw-match="{{.Match}}">{{.Match}}</div> </div> </td> <td> <div class="meta-row"> <div class="meta-item"> <span class="meta-label">Entropy:</span> <span class="meta-value">{{printf "%.2f" .Entropy}}</span> </div> {{- if .Commit}} <div class="meta-item commit-info"> <span class="meta-label">Commit:</span> <span class="meta-value">{{if gt (len .Commit) 7}}{{printf "%.7s" .Commit}}{{else}}{{.Commit}}{{end}}</span> </div> {{- if .Author}} <div class="meta-item commit-info"> <span class="meta-label">Author:</span> <span class="meta-value">{{.Author}}</span> </div> {{- end}} {{- if .Date}} <div class="meta-item commit-info"> <span class="meta-label">Date:</span> <span class="meta-value">{{.Date}}</span> </div> {{- end}} {{- if .Link}} <div class="meta-item commit-info"> <span class="meta-label">Link:</span> <span class="meta-value"><a href="{{.Link}}" target="_blank" class="commit-link">View Commit</a></span> </div> {{- end}} {{- else}} {{- if .Author}} <div class="meta-item"> <span class="meta-label">Author:</span> <span class="meta-value">{{.Author}}</span> </div> {{- end}} {{- end}} </div> {{- if not .Match}} <div class="match-content" data-raw-match="">-</div> {{- end}} </td> </tr> {{- end }} </tbody> </table> </div> </main> <footer class="app-footer"> <div>Generated by Gitleaks</div> <div>Total Findings: <strong>{{len .}}</strong></div> </footer> </div> <script> // Process data to collect unique files and rules function processData() { const rows = document.querySelectorAll('#findingsTable tbody tr'); const uniqueRules = new Set(); const uniqueFiles = new Set(); let isGitMode = false; if (rows.length > 0) { // Check if first finding has commit data to determine mode const firstRow = rows[0]; const commitCells = firstRow.querySelectorAll('.commit-info'); isGitMode = commitCells.length > 0 && commitCells[0].textContent.trim() !== ''; } // Set scan mode document.getElementById('scanMode').textContent = isGitMode ? 'Git' : 'Directory'; // Adjust UI based on mode if (isGitMode) { // Ensure commit info columns are visible for git mode document.querySelectorAll('.commit-info').forEach(el => { el.style.display = 'block'; }); } else { // Hide commit-specific UI elements for directory mode document.querySelectorAll('.commit-info').forEach(el => { el.style.display = 'none'; }); } rows.forEach(row => { uniqueRules.add(row.dataset.rule); uniqueFiles.add(row.dataset.file); }); // Update stats document.getElementById('filesCount').textContent = uniqueFiles.size; document.getElementById('rulesCount').textContent = uniqueRules.size; // Populate rule filter dropdown const ruleFilter = document.getElementById('filterRule'); const sortedRules = Array.from(uniqueRules).sort(); sortedRules.forEach(rule => { const option = document.createElement('option'); option.value = rule; option.textContent = rule; ruleFilter.appendChild(option); }); } // Hide toggle button if match is same as secret function hideRedundantToggleButtons() { document.querySelectorAll('.secret-container').forEach(container => { const secret = container.getAttribute('data-secret'); const match = container.getAttribute('data-match'); const toggleButton = container.querySelector('.match-toggle'); // If secret and match are the same, or if match is empty, hide the toggle button if ((secret && match && secret.trim() === match.trim()) || !match) { if (toggleButton) { toggleButton.style.display = 'none'; } } }); } // Setup toggle buttons function setupToggleButtons() { document.querySelectorAll('.match-toggle').forEach(btn => { btn.addEventListener('click', function() { const matchContent = this.nextElementSibling; if (matchContent.classList.contains('hidden')) { matchContent.classList.remove('hidden'); this.textContent = 'Hide Context'; } else { matchContent.classList.add('hidden'); this.textContent = 'Show Context'; } }); }); // Setup description toggle document.querySelectorAll('.description-text').forEach(descriptionText => { const toggleBtn = descriptionText.nextElementSibling; if (!toggleBtn || !toggleBtn.classList.contains('description-toggle')) return; // Initial state: collapsed descriptionText.classList.add('description-collapsed'); toggleBtn.addEventListener('click', () => { if (descriptionText.classList.contains('description-collapsed')) { descriptionText.classList.remove('description-collapsed'); descriptionText.classList.add('description-expanded'); toggleBtn.textContent = '↑'; } else { descriptionText.classList.remove('description-expanded'); descriptionText.classList.add('description-collapsed'); toggleBtn.textContent = '↕'; } }); }); } // Initialize dark mode from user preference function initDarkMode() { const prefersDark = window.matchMedia('(prefers-color-scheme: dark)').matches; const storedPreference = localStorage.getItem('darkMode'); if (storedPreference === 'true' || (storedPreference === null && prefersDark)) { document.body.classList.add('dark-mode'); } } // Toggle dark mode document.getElementById('darkModeToggle').addEventListener('click', function() { document.body.classList.toggle('dark-mode'); localStorage.setItem('darkMode', document.body.classList.contains('dark-mode')); }); // Filter functionality function applyFilters() { const ruleFilter = document.getElementById('filterRule').value; const fileFilter = document.getElementById('filterFile').value.toLowerCase(); const rows = document.querySelectorAll('#findingsTable tbody tr'); rows.forEach(row => { const ruleMatch = ruleFilter === 'all' || row.dataset.rule === ruleFilter; const fileMatch = fileFilter === '' || row.dataset.file.toLowerCase().includes(fileFilter); if (ruleMatch && fileMatch) { row.style.display = ''; } else { row.style.display = 'none'; } }); // Update visible count const visibleFindings = document.querySelectorAll('#findingsTable tbody tr:not([style*="display: none"])').length; document.querySelector('.app-footer strong').textContent = visibleFindings; } document.getElementById('filterRule').addEventListener('change', applyFilters); document.getElementById('filterFile').addEventListener('input', applyFilters); document.getElementById('resetFilters').addEventListener('click', function() { document.getElementById('filterRule').value = 'all'; document.getElementById('filterFile').value = ''; applyFilters(); }); // Initialize document.addEventListener('DOMContentLoaded', function() { processData(); hideRedundantToggleButtons(); // Hide toggle buttons for matching secrets setupToggleButtons(); initDarkMode(); }); </script> </body> </html>