Skip to content

Commit 428a0f5

Browse files
Asok Shanmugamclaude
authored andcommitted
Add runCognium.sh script for OWASP Benchmark scoring
Adds a script to scan BenchmarkJava with Cognium and produce a SARIF result file compatible with the BenchmarkUtils Cognium reader. Install: npm install -g cognium Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
1 parent b8245f4 commit 428a0f5

1 file changed

Lines changed: 14 additions & 0 deletions

File tree

scripts/runCognium.sh

Lines changed: 14 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,14 @@
1+
#!/usr/bin/env bash
2+
3+
# Install: npm install -g cognium
4+
# Check for install/updates at https://github.com/cogniumhq/cognium
5+
6+
source scripts/requireCommand.sh
7+
8+
requireCommand cognium
9+
10+
benchmark_version=$(scripts/getBenchmarkVersion.sh)
11+
cognium_version=$(cognium --version | grep -oE '[0-9]+\.[0-9]+\.[0-9]+')
12+
result_file="results/Benchmark_$benchmark_version-cognium-v$cognium_version.sarif"
13+
14+
cognium scan src/main/java --format sarif --category security --output "$result_file"

0 commit comments

Comments
 (0)