Skip to content

OPSEXP-2121 Add kics scan #6

OPSEXP-2121 Add kics scan

OPSEXP-2121 Add kics scan #6

Workflow file for this run

name: kics
on:
pull_request:
branches: [main]
push:
branches: [main]
permissions:
security-events: write
contents: write
jobs:
kics:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
- name: Run KICS Scan
uses: checkmarx/kics-github-action@530ac1f8efe6202b0f12c9a6e952597ae707b755 # v2.1.2
with:
path: './'
ignore_on_exit: results
output_path: report-dir/
token: ${{ secrets.BOT_GITHUB_TOKEN }}
enable_jobs_summary: true
platform_type: dockerfile
disable_secrets: true
- name: Upload SARIF file # Remove 'if' statement after making repo public; also add 'output_formats: 'sarif'' to the KICS action
if: false
uses: github/codeql-action/upload-sarif@323f5ef653b88011bf10e9a0a56d70d742463c9a # v3.26.8
with:
sarif_file: report-dir/results.sarif