{"version":"2.1.280","anchor":"git-based-credentialdenied-commit-scan-now-supports-multipl","canonical_anchor":"git-based-credentialdenied-commit-scan-now-supports-multipl","heading":"Git-based credential\/denied-commit scan now supports multiple excluded refs","tier":"internal","area":"Permissions","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.280\/e\/git-based-credentialdenied-commit-scan-now-supports-multipl","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.280","markdown":"### Git-based credential\/denied-commit scan now supports multiple excluded refs\n\nThe scan for denied or credential-named commits can now exclude multiple git refs at once\n\n**What**\n\nThe internal check that looks for denied or credential-named commits used to compare a single `base..target` commit range. It now runs `git rev-list` against a target commit plus a `--not` clause listing multiple excluded refs.\n\n**Why**\n\nThis lets the scan exclude several branches or refs at once rather than being limited to one base, making the check more accurate in repositories with more than one relevant baseline.\n\n- Area: Permissions\n- Tier: Under the hood\n- Useful: 1\/5\n- Signal: 1\/5"}