Skip to content

API caller for AquaSec full repository scan report #78

@tmikula-dev

Description

@tmikula-dev

Background

We found out that the AquaSec documentation contains an API specification, which can replace our incomplete full repo scan using open-source Trivy tool. At the moment we can scan only 4/6 areas (still missing SAST and Pipeline).

Feature

API caller for AquaSec full repository scan report.

Proposed Solution [Optional]

Solution Ideas:

  1. Read the API documentation
  2. Implement the AquaSec report instead of our local Trivy scan
  3. Upload the Aqua SARIF output into the GitHub Security Tab

Metadata

Metadata

Assignees

Labels

enhancementNew feature or request

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions