File tree 2 files changed +8
-40
lines changed
2 files changed +8
-40
lines changed Original file line number Diff line number Diff line change 1
1
name : changelog
2
2
permissions : write-all
3
-
4
3
on :
5
4
push :
6
5
tags :
7
6
- " *"
8
- # Allows you to run this workflow manually from the Actions tab
9
7
workflow_dispatch :
10
8
jobs :
11
- call-workflow- changelog :
9
+ changelog :
12
10
uses : clouddrove/github-shared-workflows/.github/workflows/changelog.yml@master
11
+ secrets : inherit
13
12
with :
14
13
branch : ' master'
Original file line number Diff line number Diff line change 1
1
name : tfsec
2
+ permissions : write-all
2
3
on :
3
4
pull_request :
4
-
5
+ workflow_dispatch :
5
6
jobs :
6
7
tfsec :
7
- name : tfsec sarif report
8
- runs-on : ubuntu-latest
9
-
10
- steps :
11
- - name : Clone repo
12
- uses : actions/checkout@master
13
-
14
- - name : tfsec
15
- uses :
aquasecurity/[email protected]
16
- with :
17
- sarif_file : tfsec.sarif
18
- working_directory : ./_example/
19
- full_repo_scan : true
20
-
21
- - name : Upload SARIF file
22
- uses : github/codeql-action/upload-sarif@v1
23
- with :
24
- # Path to SARIF file relative to the root of the repository
25
- sarif_file : tfsec.sarif
26
-
27
- - name : tfsec commenter for PR
28
- uses : tfsec/tfsec-pr-commenter-action@main
29
- with :
30
- GITHUB_TOKEN : ${{ secrets.GITHUB}}
31
- working_directory : ./_example/
32
-
33
-
34
- - name : ' Terraform security scan Advanced'
35
-
36
- if : github.event_name == 'pull_request'
37
- env :
38
- GITHUB_TOKEN : ${{ secrets.GITHUB}}
39
- tfsec_actions_working_dir : ./_example/
40
- tfsec_actions_comment : true
41
- tfsec_output_format : sarif
42
- continue-on-error : true
8
+ uses : clouddrove/github-shared-workflows/.github/workflows/tfsec.yml@master
9
+ secrets : inherit
10
+ with :
11
+ working_directory : ' .'
You can’t perform that action at this time.
0 commit comments