-
Notifications
You must be signed in to change notification settings - Fork 549
Feat api spec validator #6803
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Feat api spec validator #6803
Conversation
# Conflicts: # specs/common/delete-options.yaml
duplicated removed ap spec correction
api-spec fix api-spec fix api-spec fix API Error wrapper API Error wrapper specs fixes
* fix: API token generation api responses refactoring * fix: register custom validation against tag for api token name validations * fix: register custom validation against tag for api token name validations * Revert "fix: register custom validation against tag for api token name validations" This reverts commit 7593c27. * fix: remove `required` validation from Description and expiryAtInMs * fix: adding resource conflict api response in WriteJsonResp utility * fix: path params int validation updated to whole numbers only * fix: handled resource not found response for update and delete api, token
…n ge default deployment template
* fix: API token generation api responses refactoring * fix: register custom validation against tag for api token name validations * fix: register custom validation against tag for api token name validations * Revert "fix: register custom validation against tag for api token name validations" This reverts commit 7593c27. * fix: remove `required` validation from Description and expiryAtInMs * fix: adding resource conflict api response in WriteJsonResp utility * fix: path params int validation updated to whole numbers only * fix: handled resource not found response for update and delete api, token * fix: validation for SSO config name field * fix: enhanced query param validation for commit metadata for pipeline material * fix: disable updating clsutername and api name in update clsuter api * fix: enhanced api response in query param validation failure reeors in ge default deployment template * fix: disable modifying cluster nae and env name in update env api * fix: resolving review comments * fix: resolving review comments
fix: enhacned api responses and error mesages
|
GitGuardian id | GitGuardian status | Secret | Commit | Filename | |
---|---|---|---|---|---|
19465121 | Triggered | Generic High Entropy Secret | 15b2a4f | scripts/sql/34304100_bulk_edit_config.up.sql | View secret |
20477209 | Triggered | Generic High Entropy Secret | 40bb962 | tests/api-spec-validation/Makefile | View secret |
19602448 | Triggered | Generic High Entropy Secret | 4338a20 | tests/api-spec-validation/Makefile | View secret |
19601641 | Triggered | AWS IAM Keys | 67387e6 | tests/api-spec-validation/reports/live-server-validation-report.md | View secret |
19578172 | Triggered | Generic High Entropy Secret | b35c605 | tests/api-spec-validation/Makefile | View secret |
19601642 | Triggered | GitHub Fine Grained Personal Access Token | 67387e6 | tests/api-spec-validation/reports/live-server-validation-report.md | View secret |
🛠 Guidelines to remediate hardcoded secrets
- Understand the implications of revoking this secret by investigating where it is used in your code.
- Replace and store your secrets safely. Learn here the best practices.
- Revoke and rotate these secrets.
- If possible, rewrite git history. Rewriting git history is not a trivial act. You might completely break other contributing developers' workflow and you risk accidentally deleting legitimate data.
To avoid such incidents in the future consider
- following these best practices for managing and storing secrets including API keys and other credentials
- install secret detection on pre-commit to catch secret before it leaves your machine and ease remediation.
🦉 GitGuardian detects secrets in your source code to help developers and security teams secure the modern development process. You are seeing this because you or someone else with access to this repository has authorized GitGuardian to scan your pull request.
Some linked issues are invalid. Please update the issue links:\nIssue # in is not found or invalid (HTTP }404).\n |
Some linked issues are invalid. Please update the issue links:\nIssue # in is not found or invalid (HTTP }404).\n |
|
Description
Fixes #
Checklist:
Does this PR introduce a user-facing change?
Summary by Bito
This pull request enhances error handling across API endpoints by providing clearer error messages for invalid app IDs and missing parameters. It also improves logging for better request validation, aiming to increase the robustness of the API.