Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Added Semgrep CI/CD scan #182

Open
wants to merge 3 commits into
base: master
Choose a base branch
from
Open

Added Semgrep CI/CD scan #182

wants to merge 3 commits into from

Conversation

voidd7
Copy link

@voidd7 voidd7 commented May 14, 2024

Description

As a part of improving our security posture we have decided to add Semgrep scans to public repositories therefore this commit contains the yaml config file for semgrep to start the scans.

@voidd7 voidd7 requested a review from ardenma May 14, 2024 16:29
Updated semgrep.yml file to fix error about dependabot not found
Copy link

@ardenma ardenma left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks! I assume you were able to add the secrets.SEMGREP_APP_TOKEN_PUBLIC secret?

@voidd7
Copy link
Author

voidd7 commented May 14, 2024

Thanks! I assume you were able to add the secrets.SEMGREP_APP_TOKEN_PUBLIC secret?

Yep, I asked Sushil to add it at org level for me.

@ardenma ardenma had a problem deploying to gosnowflake-ci-env May 17, 2024 16:13 — with GitHub Actions Failure
@ardenma ardenma had a problem deploying to gosnowflake-ci-env May 17, 2024 19:19 — with GitHub Actions Failure
@ardenma ardenma deployed to gosnowflake-ci-env May 17, 2024 19:45 — with GitHub Actions Active
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants