@@ -7,9 +7,8 @@ metadata:
7
7
build.appstudio.redhat.com/pull_request_number : ' {{pull_request_number}}'
8
8
build.appstudio.redhat.com/target_branch : ' {{target_branch}}'
9
9
pipelinesascode.tekton.dev/max-keep-runs : " 3"
10
- pipelinesascode.tekton.dev/on-cel-expression : event == "pull_request" && target_branch
11
- == "main"
12
- creationTimestamp : null
10
+ pipelinesascode.tekton.dev/on-cel-expression : event == "pull_request" && target_branch == "main"
11
+ creationTimestamp :
13
12
labels :
14
13
appstudio.openshift.io/application : application-service
15
14
appstudio.openshift.io/component : application-service
43
42
- name : name
44
43
value : show-sbom
45
44
- name : bundle
46
- value : quay.io/konflux-ci/tekton-catalog/task-show-sbom:0.1@sha256:52f8b96b96ce4203d4b74d850a85f963125bf8eef0683ea5acdd80818d335a28
45
+ value : quay.io/konflux-ci/tekton-catalog/task-show-sbom:0.1@sha256:1b1df4da95966d08ac6a5b8198710e09e68b5c2cdc707c37d9d19769e65884b2
47
46
- name : kind
48
47
value : task
49
48
resolver : bundles
62
61
- name : name
63
62
value : summary
64
63
- name : bundle
65
- value : quay.io/konflux-ci/tekton-catalog/task-summary:0.2@sha256:d97c04ab42f277b1103eb6f3a053b247849f4f5b3237ea302a8ecada3b24e15b
64
+ value : quay.io/konflux-ci/tekton-catalog/task-summary:0.2@sha256:3f6e8513cbd70f0416eb6c6f2766973a754778526125ff33d8e3633def917091
66
65
- name : kind
67
66
value : task
68
67
resolver : bundles
@@ -78,13 +77,11 @@ spec:
78
77
name : output-image
79
78
type : string
80
79
- default : .
81
- description : Path to the source code of an application's component from where
82
- to build image.
80
+ description : Path to the source code of an application's component from where to build image.
83
81
name : path-context
84
82
type : string
85
83
- default : Dockerfile
86
- description : Path to the Dockerfile inside the context specified by parameter
87
- path-context
84
+ description : Path to the Dockerfile inside the context specified by parameter path-context
88
85
name : dockerfile
89
86
type : string
90
87
- default : " false"
@@ -108,8 +105,7 @@ spec:
108
105
name : java
109
106
type : string
110
107
- default : " "
111
- description : Image tag expiration time, time values could be something like
112
- 1h, 2d, 3w for hours, days, and weeks, respectively.
108
+ description : Image tag expiration time, time values could be something like 1h, 2d, 3w for hours, days, and weeks, respectively.
113
109
name : image-expires-after
114
110
- default : " false"
115
111
description : Build a source image.
@@ -128,9 +124,6 @@ spec:
128
124
- description : " "
129
125
name : CHAINS-GIT_COMMIT
130
126
value : $(tasks.clone-repository.results.commit)
131
- - description : " "
132
- name : JAVA_COMMUNITY_DEPENDENCIES
133
- value : $(tasks.build-container.results.JAVA_COMMUNITY_DEPENDENCIES)
134
127
tasks :
135
128
- name : init
136
129
params :
@@ -145,7 +138,7 @@ spec:
145
138
- name : name
146
139
value : init
147
140
- name : bundle
148
- value : quay.io/konflux-ci/tekton-catalog/task-init:0.2@sha256:f239f38bba3a8351c8cb0980fde8e2ee477ded7200178b0f45175e4006ff1dca
141
+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.2@sha256:66e90d31e1386bf516fb548cd3e3f0082b5d0234b8b90dbf9e0d4684b70dbe1a
149
142
- name : kind
150
143
value : task
151
144
resolver : bundles
@@ -162,7 +155,7 @@ spec:
162
155
- name : name
163
156
value : git-clone
164
157
- name : bundle
165
- value : quay.io/konflux-ci/tekton-catalog/task-git-clone:0.1@sha256:2cccdf8729ad4d5adf65e8b66464f8efa1e1c87ba16d343b4a6c621a2a40f7e1
158
+ value : quay.io/konflux-ci/tekton-catalog/task-git-clone:0.1@sha256:7939000e2f92fc8b5d2c4ee4ba9000433c5aa7700d2915a1d4763853d5fd1fd4
166
159
- name : kind
167
160
value : task
168
161
resolver : bundles
@@ -187,7 +180,7 @@ spec:
187
180
- name : name
188
181
value : prefetch-dependencies
189
182
- name : bundle
190
- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies:0.1 @sha256:f53fe5482599b39ae2d1004cf09a2026fd9dd3822ab6ef46b51b4a398b0a3232
183
+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies:0.2 @sha256:afaf24519f78c76bd6e3c00c24ecb8918a623210fb7c6ee9aaf5fbaeba1f6c7b
191
184
- name : kind
192
185
value : task
193
186
resolver : bundles
@@ -222,7 +215,7 @@ spec:
222
215
- name : name
223
216
value : buildah
224
217
- name : bundle
225
- value : quay.io/konflux-ci/tekton-catalog/task-buildah:0.2 @sha256:11b7f08ddaa281fcf40494a2a2f79e0aebcaa3e7da93790fecad4d46983648d2
218
+ value : quay.io/konflux-ci/tekton-catalog/task-buildah:0.4 @sha256:fc7437e1fc19d7a2b468e529f7fbc372ca139f194ec5d8ea28fe48b0817ec6c0
226
219
- name : kind
227
220
value : task
228
221
resolver : bundles
@@ -237,15 +230,17 @@ spec:
237
230
- name : build-source-image
238
231
params :
239
232
- name : BINARY_IMAGE
240
- value : $(params.output-image)
233
+ value : $(tasks.build-container.results.IMAGE_URL)
234
+ - name : BINARY_IMAGE_DIGEST
235
+ value : $(tasks.build-container.results.IMAGE_DIGEST)
241
236
runAfter :
242
237
- build-container
243
238
taskRef :
244
239
params :
245
240
- name : name
246
241
value : source-build
247
242
- name : bundle
248
- value : quay.io/konflux-ci/tekton-catalog/task-source-build:0.1 @sha256:53a41b0838b61cbacc7ecd4ffd87cf3f41b28a4aa9e095fe95779982c688dc85
243
+ value : quay.io/konflux-ci/tekton-catalog/task-source-build:0.3 @sha256:1fdda7563f21340d6243c8738934a58adffd8253706b423d1c4ec5e26ba5fae0
249
244
- name : kind
250
245
value : task
251
246
resolver : bundles
@@ -274,7 +269,7 @@ spec:
274
269
- name : name
275
270
value : deprecated-image-check
276
271
- name : bundle
277
- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.4 @sha256:443ffa897ee35e416a0bfd39721c68cbf88cfa5c74c843c5183218d0cd586e82
272
+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5 @sha256:3c8b81fa868e27c6266e7660a4bfb4c822846dcf4304606e71e20893b0d3e515
278
273
- name : kind
279
274
value : task
280
275
resolver : bundles
@@ -296,7 +291,7 @@ spec:
296
291
- name : name
297
292
value : clair-scan
298
293
- name : bundle
299
- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.2@sha256:90e371fe7ec2288259a906bc1fd49c53b8b97a0b0b02da0893fb65e3be2a5801
294
+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.2@sha256:d354939892f3a904223ec080cc3771bd11931085a5d202323ea491ee8e8c5e43
300
295
- name : kind
301
296
value : task
302
297
resolver : bundles
@@ -306,14 +301,19 @@ spec:
306
301
values :
307
302
- " false"
308
303
- name : sast-snyk-check
304
+ params :
305
+ - name : image-digest
306
+ value : $(tasks.build-container.results.IMAGE_DIGEST)
307
+ - name : image-url
308
+ value : $(tasks.build-container.results.IMAGE_URL)
309
309
runAfter :
310
310
- clone-repository
311
311
taskRef :
312
312
params :
313
313
- name : name
314
314
value : sast-snyk-check
315
315
- name : bundle
316
- value : quay.io/konflux-ci/tekton-catalog/task-sast-snyk-check:0.2 @sha256:eb7c643130f226c345b3602dca280e6f8cd6f90f948503918d5a2677bf0610f7
316
+ value : quay.io/konflux-ci/tekton-catalog/task-sast-snyk-check:0.4 @sha256:da2344f6dae50fc14892d818aee128f9d5df32d0d98dddb504e721408a9fb13d
317
317
- name : kind
318
318
value : task
319
319
resolver : bundles
@@ -338,7 +338,7 @@ spec:
338
338
- name : name
339
339
value : clamav-scan
340
340
- name : bundle
341
- value : quay.io/konflux-ci/tekton-catalog/task-clamav-scan:0.1 @sha256:21c7d037df3b430fc5c21b932e2062d0b82b046f39a2dc965aba7dff7a9cfc57
341
+ value : quay.io/konflux-ci/tekton-catalog/task-clamav-scan:0.2 @sha256:9cab95ac9e833d77a63c079893258b73b8d5a298d93aaf9bdd6722471bc2f338
342
342
- name : kind
343
343
value : task
344
344
resolver : bundles
@@ -347,6 +347,56 @@ spec:
347
347
operator : in
348
348
values :
349
349
- " false"
350
+ - name : sast-shell-check
351
+ workspaces :
352
+ - name : workspace
353
+ workspace : workspace
354
+ params :
355
+ - name : image-digest
356
+ value : $(tasks.build-container.results.IMAGE_DIGEST)
357
+ - name : image-url
358
+ value : $(tasks.build-container.results.IMAGE_URL)
359
+ runAfter :
360
+ - build-container
361
+ taskRef :
362
+ params :
363
+ - name : name
364
+ value : sast-shell-check
365
+ - name : bundle
366
+ value : quay.io/konflux-ci/tekton-catalog/task-sast-shell-check:0.1@sha256:8587b9276b11182454b0786c536668d63780552d27ad297a9e8bd04a2af6378e
367
+ - name : kind
368
+ value : task
369
+ resolver : bundles
370
+ when :
371
+ - input : $(params.skip-checks)
372
+ operator : in
373
+ values :
374
+ - " false"
375
+ - name : sast-unicode-check
376
+ workspaces :
377
+ - name : workspace
378
+ workspace : workspace
379
+ params :
380
+ - name : image-url
381
+ value : $(tasks.build-container.results.IMAGE_URL)
382
+ - name : image-digest
383
+ value : $(tasks.build-container.results.IMAGE_DIGEST)
384
+ runAfter :
385
+ - build-container
386
+ taskRef :
387
+ params :
388
+ - name : name
389
+ value : sast-unicode-check
390
+ - name : bundle
391
+ value : quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check:0.3@sha256:bec18fa5e82e801c3f267f29bf94535a5024e72476f2b27cca7271d506abb5ad
392
+ - name : kind
393
+ value : task
394
+ resolver : bundles
395
+ when :
396
+ - input : $(params.skip-checks)
397
+ operator : in
398
+ values :
399
+ - " false"
350
400
- name : rpms-signature-scan
351
401
params :
352
402
- name : image-url
@@ -360,7 +410,7 @@ spec:
360
410
- name : name
361
411
value : rpms-signature-scan
362
412
- name : bundle
363
- value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:0c9667fba291af05997397a32e5e938ccaa46e93a2e14bad228e64a6427c5545
413
+ value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:1b6c20ab3dbfb0972803d3ebcb2fa72642e59400c77bd66dfd82028bdd09e120
364
414
- name : kind
365
415
value : task
366
416
resolver : bundles
@@ -378,7 +428,7 @@ spec:
378
428
- name : workspace
379
429
volumeClaimTemplate :
380
430
metadata :
381
- creationTimestamp : null
431
+ creationTimestamp :
382
432
spec :
383
433
accessModes :
384
434
- ReadWriteOnce
0 commit comments