File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 1+ name : Kusari Security Scan
2+
3+ on :
4+ pull_request :
5+ branches :
6+ - main
7+
8+ jobs :
9+ kusari-scan :
10+ uses : kusaridev/kusari-ci-templates/.github/workflows/kusari-scan-v1.yml@v1
11+ permissions :
12+ contents : read
13+ pull-requests : write # Required for PR comments
14+ secrets :
15+ KUSARI_CLIENT_ID : ${{ secrets.KUSARI_CLIENT_ID }}
16+ KUSARI_CLIENT_SECRET : ${{ secrets.KUSARI_CLIENT_SECRET }}
17+ with :
18+ fail_on_issues : false
19+ post_comment : true
Original file line number Diff line number Diff line change @@ -70,3 +70,20 @@ repository:
7070 adhoc : true
7171 ci : true
7272 release : false
73+ - name : Kusari Inspector
74+ type : SCA
75+ version : v1
76+ rulesets :
77+ - built-in
78+ results :
79+ ci :
80+ name : CI SCA Results
81+ predicate-uri : https://github.com/kusaridev/kusari-ci-templates/blob/main/.github/workflows/kusari-scan-v1.yml
82+ location : https://github.com/gemaraproj/go-gemara/pulls
83+ comment : |
84+ Kusari Inspector analyzes pull requests for dependency and code security issues.
85+ Results are posted as PR comments.
86+ integration :
87+ adhoc : false
88+ ci : true
89+ release : false
You can’t perform that action at this time.
0 commit comments