Skip to content

<a href="#"><img alt="P1" src="https://greptile-static-assets.s3.amazonaws.com/badges/p1.svg?v=9" align="top"></a> **Secrets Not Gitignored** #402

Description

@garlobrian52

P1 Secrets Not Gitignored

The note says .env is ignored by default, but the repository ignore file does not include .env. A user following these steps can commit STRIPE_SECRET_KEY or STRIPE_WEBHOOK_SECRET while relying on this safety note.

Artifacts

Repro: git check-ignore and status output showing .env is not ignored

  • Keeps the command output available without making the summary code-heavy.

View artifacts

T-Rex Ran code and verified through T-Rex

Prompt To Fix With AI
This is a comment left during a code review.
Path: server/README.md
Line: 42

Comment:
**Secrets Not Gitignored**

The note says `.env` is ignored by default, but the repository ignore file does not include `.env`. A user following these steps can commit `STRIPE_SECRET_KEY` or `STRIPE_WEBHOOK_SECRET` while relying on this safety note.

How can I resolve this? If you propose a fix, please make it concise.

Fix in Claude Code

Originally posted by @greptile-apps[bot] in garlobrian52/agentic-commerce-protocol#1 (comment)

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions