Merge pull request #6 from prosperllc/appsec-modify-scanner

Appsec update : update scanner
This commit is contained in:
prosper-sre 2024-08-20 09:17:44 -07:00 committed by GitHub
commit 0e62c87410
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 22 additions and 0 deletions

22
.github/workflows/security.yml vendored Normal file
View File

@ -0,0 +1,22 @@
name: Security action
on:
workflow_dispatch: {}
pull_request:
schedule:
- cron: 5 4 * * 6
jobs:
security-action:
uses: prosperllc/appsec-utils/.github/workflows/security_action.yml@master
with:
repo: ${{ github.repository }}
head_ref: ${{ github.head_ref}}
base_ref: ${{github.base_ref }}
secrets:
token: ${{ secrets.GITHUB_TOKEN }}
GH_PAT: ${{ secrets.SECRET_SCANNER_GITHUB_TOKEN}}
SLACK_TOKEN: ${{secrets.SECRET_SCANNER_SLACK_CHANNEL_ID}}
SEMGREP_TOKEN: ${{ secrets.GH_SEMGREP_APP_TOKEN }}
GAR_JSON_KEY: ${{secrets.GAR_JSON_KEY}}