feat(tooling): add security tools configuration #2
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Center of Gravity Prodsec: Security tools tracking
Read more in Center of Gravity: Prodsec.
Got questions? #infosec.
Initiative Overview:
At SumUp, Shift Left security is a key component of our security strategy. We aim to embed security into the earliest phases of the application development process so vulnerable code is identified early rather than in the testing phases or in production. Shifting left will help us to reduce costs and to create secure products for merchants and users.
What's Included in this PR
This automated pull request incorporates the essential
security_tools.yaml
file which is used by the Security team for tracking adoption of various security tools.