@@ -101,6 +101,10 @@ spec:
101101 default : ' true'
102102 description : Use the package registry proxy when prefetching dependencies
103103 type : string
104+ - name : sast-target-dirs
105+ type : string
106+ default : .
107+ description : Target directories to scan with SAST tools. Multiple values should be separated with commas.
104108 results :
105109 - description : " "
106110 name : IMAGE_URL
@@ -124,7 +128,7 @@ spec:
124128 - name : name
125129 value : init
126130 - name : bundle
127- value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:b797dd453ddad669365de6de4649e3a9e37e77aa26eb9862ca079a36cbfe64a4
131+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:5a423246792ac501ea279229b42ee57da9927da441c04b5c9ff86817b0856b08
128132 - name : kind
129133 value : task
130134 resolver : bundles
@@ -171,7 +175,7 @@ spec:
171175 - name : name
172176 value : prefetch-dependencies-oci-ta
173177 - name : bundle
174- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:1b209c0d93e52e418f3e6cd4b4fd915a84e4bd7f68e1cfd0d6446133540d7f43
178+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:a2efbcdcecfa5293a622eb356a18f5c88e5714046b214fe8730b43b1a7dbb77d
175179 - name : kind
176180 value : task
177181 resolver : bundles
@@ -287,7 +291,7 @@ spec:
287291 - name : name
288292 value : deprecated-image-check
289293 - name : bundle
290- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:57d1f556982115311f603dd9a728c52a7a1d092f022e1db4560da01eca9e5d17
294+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:e78d0d3baf3c8cfc1a5ad278196b74032d9568b143a87c7a79ab780fedfb296e
291295 - name : kind
292296 value : task
293297 resolver : bundles
@@ -309,7 +313,7 @@ spec:
309313 - name : name
310314 value : clair-scan
311315 - name : bundle
312- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:cd49cdea7e5403a87c4774bd8ea10bc4e6aeb83841ff490cbe42b782779513a7
316+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:8fad4c2e2f470f82ee43d6b2ac72327b4d9c6e9cb514a678911c1c9359c29894
313317 - name : kind
314318 value : task
315319 resolver : bundles
@@ -329,7 +333,7 @@ spec:
329333 - name : name
330334 value : ecosystem-cert-preflight-checks
331335 - name : bundle
332- value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:25dcef1d9270b2e03fe6710a733171f7c7208e341fc627dac3a579088f44af34
336+ value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:e2bcf1174a6dae9969b8f12e94babe2a5881bc77a509f10823b6a9eac6392850
333337 - name : kind
334338 value : task
335339 resolver : bundles
@@ -348,6 +352,8 @@ spec:
348352 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
349353 - name : CACHI2_ARTIFACT
350354 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
355+ - name : TARGET_DIRS
356+ value : $(params.sast-target-dirs)
351357 runAfter :
352358 - build-image-index
353359 taskRef :
@@ -415,6 +421,8 @@ spec:
415421 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
416422 - name : CACHI2_ARTIFACT
417423 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
424+ - name : TARGET_DIRS
425+ value : $(params.sast-target-dirs)
418426 runAfter :
419427 - coverity-availability-check
420428 taskRef :
@@ -462,6 +470,8 @@ spec:
462470 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
463471 - name : CACHI2_ARTIFACT
464472 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
473+ - name : TARGET_DIRS
474+ value : $(params.sast-target-dirs)
465475 runAfter :
466476 - build-image-index
467477 taskRef :
@@ -488,6 +498,8 @@ spec:
488498 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
489499 - name : CACHI2_ARTIFACT
490500 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
501+ - name : TARGET_DIRS
502+ value : $(params.sast-target-dirs)
491503 runAfter :
492504 - build-image-index
493505 taskRef :
0 commit comments