Skip to content

cfsec GitHub action to upload sarif results to code scanning

License

Notifications You must be signed in to change notification settings

IlzaDeJesusCassiano/cfsec-sarif-action

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

GitHub All Releases

cfsec-sarif-action

Description

This Github Action will run the cfsec sarif check then add the report to the repo for upload.

Example usage

name: cfsec
on:
  push:
    branches:
      - main
  pull_request:
jobs:
  cfsec:
    name: cfsec sarif report
    runs-on: ubuntu-latest

    steps:
      - name: Clone repo
        uses: actions/checkout@master

      - name: cfsec
        uses: cfsec/cfsec-sarif-action@master
        with:
          sarif_file: cfsec.sarif         
          github_token: ${{ secrets.GITHUB_TOKEN }}

      - name: Upload SARIF file
        uses: github/codeql-action/upload-sarif@v1
        with:
          # Path to SARIF file relative to the root of the repository
          sarif_file: cfsec.sarif         

Example

The cfsec example project shows an example of the output here

image

About

cfsec GitHub action to upload sarif results to code scanning

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages

  • Dockerfile 56.9%
  • Shell 43.1%