File tree Expand file tree Collapse file tree 4 files changed +57
-0
lines changed Expand file tree Collapse file tree 4 files changed +57
-0
lines changed Original file line number Diff line number Diff line change 1+ name : SAST Scan
2+ on :
3+ push :
4+ branches :
5+ - ' *'
6+ pull_request :
7+ types : [opened, synchronize, reopened]
8+ jobs :
9+ security :
10+ runs-on : ubuntu-latest
11+ steps :
12+ - uses : actions/checkout@v2
13+ - name : Horusec Scan
14+ run : docker run -v /var/run/docker.sock:/var/run/docker.sock -v $(pwd):/src horuszup/horusec-cli:latest horusec start -p /src -P $(pwd)
Original file line number Diff line number Diff line change 1+ name : Source Composition Analysis Monitor
2+ on : push
3+ jobs :
4+ security :
5+ runs-on : ubuntu-latest
6+ steps :
7+ - uses : actions/checkout@master
8+ - name : Run Snyk to check for vulnerabilities
9+ uses : snyk/actions/node@master
10+ env :
11+ SNYK_TOKEN : ${{ secrets.SNYK_TOKEN }}
12+ with :
13+ command : monitor
Original file line number Diff line number Diff line change 1+ name : Source Composition Analysis Scan
2+ on :
3+ push :
4+ branches :
5+ - master
6+ pull_request :
7+ types : [opened, synchronize, reopened]
8+ jobs :
9+ security :
10+ runs-on : ubuntu-latest
11+ steps :
12+ - uses : actions/checkout@master
13+ - name : Run Snyk to check for vulnerabilities
14+ uses : snyk/actions/node@master
15+ env :
16+ SNYK_TOKEN : ${{ secrets.SNYK_TOKEN }}
Original file line number Diff line number Diff line change 1+ name : Secrets Scan
2+ on :
3+ push :
4+ branches :
5+ - ' *'
6+ pull_request :
7+ types : [opened, synchronize, reopened]
8+ jobs :
9+ security :
10+ runs-on : ubuntu-latest
11+ steps :
12+ - uses : actions/checkout@v2
13+ - name : Gittyleaks
14+ uses : gupy-io/gittyleaks-action@v0.1
You can’t perform that action at this time.
0 commit comments