Skip to content

Commit 5f75e03

Browse files
committed
chore: add sast-unicode-check and sast-shell-check tasks
Signed-off-by: dirgim <[email protected]> rh-pre-commit.version: 2.2.0 rh-pre-commit.check-secrets: ENABLED
1 parent 72374d3 commit 5f75e03

File tree

2 files changed

+100
-0
lines changed

2 files changed

+100
-0
lines changed

.tekton/application-service-pull-request.yaml

Lines changed: 50 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -347,6 +347,56 @@ spec:
347347
operator: in
348348
values:
349349
- "false"
350+
- name: sast-shell-check
351+
workspaces:
352+
- name: workspace
353+
workspace: workspace
354+
params:
355+
- name: image-digest
356+
value: $(tasks.build-container.results.IMAGE_DIGEST)
357+
- name: image-url
358+
value: $(tasks.build-container.results.IMAGE_URL)
359+
runAfter:
360+
- build-container
361+
taskRef:
362+
params:
363+
- name: name
364+
value: sast-shell-check
365+
- name: bundle
366+
value: quay.io/konflux-ci/tekton-catalog/task-sast-shell-check:0.1@sha256:8587b9276b11182454b0786c536668d63780552d27ad297a9e8bd04a2af6378e
367+
- name: kind
368+
value: task
369+
resolver: bundles
370+
when:
371+
- input: $(params.skip-checks)
372+
operator: in
373+
values:
374+
- "false"
375+
- name: sast-unicode-check
376+
workspaces:
377+
- name: workspace
378+
workspace: workspace
379+
params:
380+
- name: image-url
381+
value: $(tasks.build-container.results.IMAGE_URL)
382+
- name: image-digest
383+
value: $(tasks.build-container.results.IMAGE_DIGEST)
384+
runAfter:
385+
- build-container
386+
taskRef:
387+
params:
388+
- name: name
389+
value: sast-unicode-check
390+
- name: bundle
391+
value: quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check:0.3@sha256:bec18fa5e82e801c3f267f29bf94535a5024e72476f2b27cca7271d506abb5ad
392+
- name: kind
393+
value: task
394+
resolver: bundles
395+
when:
396+
- input: $(params.skip-checks)
397+
operator: in
398+
values:
399+
- "false"
350400
- name: rpms-signature-scan
351401
params:
352402
- name: image-url

.tekton/application-service-push.yaml

Lines changed: 50 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -344,6 +344,56 @@ spec:
344344
operator: in
345345
values:
346346
- "false"
347+
- name: sast-shell-check
348+
workspaces:
349+
- name: workspace
350+
workspace: workspace
351+
params:
352+
- name: image-digest
353+
value: $(tasks.build-container.results.IMAGE_DIGEST)
354+
- name: image-url
355+
value: $(tasks.build-container.results.IMAGE_URL)
356+
runAfter:
357+
- build-container
358+
taskRef:
359+
params:
360+
- name: name
361+
value: sast-shell-check
362+
- name: bundle
363+
value: quay.io/konflux-ci/tekton-catalog/task-sast-shell-check:0.1@sha256:8587b9276b11182454b0786c536668d63780552d27ad297a9e8bd04a2af6378e
364+
- name: kind
365+
value: task
366+
resolver: bundles
367+
when:
368+
- input: $(params.skip-checks)
369+
operator: in
370+
values:
371+
- "false"
372+
- name: sast-unicode-check
373+
workspaces:
374+
- name: workspace
375+
workspace: workspace
376+
params:
377+
- name: image-url
378+
value: $(tasks.build-container.results.IMAGE_URL)
379+
- name: image-digest
380+
value: $(tasks.build-container.results.IMAGE_DIGEST)
381+
runAfter:
382+
- build-container
383+
taskRef:
384+
params:
385+
- name: name
386+
value: sast-unicode-check
387+
- name: bundle
388+
value: quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check:0.3@sha256:bec18fa5e82e801c3f267f29bf94535a5024e72476f2b27cca7271d506abb5ad
389+
- name: kind
390+
value: task
391+
resolver: bundles
392+
when:
393+
- input: $(params.skip-checks)
394+
operator: in
395+
values:
396+
- "false"
347397
- name: rpms-signature-scan
348398
params:
349399
- name: image-url

0 commit comments

Comments
 (0)