@@ -109,6 +109,10 @@ spec:
109109 default : ' true'
110110 description : Use the package registry proxy when prefetching dependencies
111111 type : string
112+ - name : sast-target-dirs
113+ type : string
114+ default : .
115+ description : Target directories to scan with SAST tools. Multiple values should be separated with commas.
112116 results :
113117 - description : " "
114118 name : IMAGE_URL
@@ -132,7 +136,7 @@ spec:
132136 - name : name
133137 value : init
134138 - name : bundle
135- value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:b797dd453ddad669365de6de4649e3a9e37e77aa26eb9862ca079a36cbfe64a4
139+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:5a423246792ac501ea279229b42ee57da9927da441c04b5c9ff86817b0856b08
136140 - name : kind
137141 value : task
138142 resolver : bundles
@@ -179,7 +183,7 @@ spec:
179183 - name : name
180184 value : prefetch-dependencies-oci-ta
181185 - name : bundle
182- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:1b209c0d93e52e418f3e6cd4b4fd915a84e4bd7f68e1cfd0d6446133540d7f43
186+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:a2efbcdcecfa5293a622eb356a18f5c88e5714046b214fe8730b43b1a7dbb77d
183187 - name : kind
184188 value : task
185189 resolver : bundles
@@ -291,7 +295,7 @@ spec:
291295 - name : name
292296 value : deprecated-image-check
293297 - name : bundle
294- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:57d1f556982115311f603dd9a728c52a7a1d092f022e1db4560da01eca9e5d17
298+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:e78d0d3baf3c8cfc1a5ad278196b74032d9568b143a87c7a79ab780fedfb296e
295299 - name : kind
296300 value : task
297301 resolver : bundles
@@ -313,7 +317,7 @@ spec:
313317 - name : name
314318 value : clair-scan
315319 - name : bundle
316- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:cd49cdea7e5403a87c4774bd8ea10bc4e6aeb83841ff490cbe42b782779513a7
320+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:8fad4c2e2f470f82ee43d6b2ac72327b4d9c6e9cb514a678911c1c9359c29894
317321 - name : kind
318322 value : task
319323 resolver : bundles
@@ -333,7 +337,7 @@ spec:
333337 - name : name
334338 value : ecosystem-cert-preflight-checks
335339 - name : bundle
336- value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:25dcef1d9270b2e03fe6710a733171f7c7208e341fc627dac3a579088f44af34
340+ value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:e2bcf1174a6dae9969b8f12e94babe2a5881bc77a509f10823b6a9eac6392850
337341 - name : kind
338342 value : task
339343 resolver : bundles
@@ -352,6 +356,8 @@ spec:
352356 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
353357 - name : CACHI2_ARTIFACT
354358 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
359+ - name : TARGET_DIRS
360+ value : $(params.sast-target-dirs)
355361 runAfter :
356362 - build-image-index
357363 taskRef :
@@ -400,6 +406,8 @@ spec:
400406 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
401407 - name : CACHI2_ARTIFACT
402408 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
409+ - name : TARGET_DIRS
410+ value : $(params.sast-target-dirs)
403411 runAfter :
404412 - build-image-index
405413 taskRef :
@@ -424,6 +432,8 @@ spec:
424432 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
425433 - name : CACHI2_ARTIFACT
426434 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
435+ - name : TARGET_DIRS
436+ value : $(params.sast-target-dirs)
427437 runAfter :
428438 - build-image-index
429439 taskRef :
@@ -500,7 +510,7 @@ spec:
500510 - name : name
501511 value : rpms-signature-scan
502512 - name : bundle
503- value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:1d807f6be3be2bd8bff76321e9599bbafce8196dcd9597eeffd9df65466682af
513+ value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:cfdb76c67f27bc498132431f5a24fbc17dac1981d6f6e3da5cf5964ac5abdd20
504514 - name : kind
505515 value : task
506516 resolver : bundles
0 commit comments