Skip to content

Conversation

@voidd7
Copy link

@voidd7 voidd7 commented May 14, 2024

Description

As a part of improving our security posture we have decided to add Semgrep scans to public repositories therefore this commit contains the yaml config file for semgrep to start the scans.

@voidd7 voidd7 requested a review from ardenma May 14, 2024 16:29
Updated semgrep.yml file to fix error about dependabot not found
Copy link

@ardenma ardenma left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks! I assume you were able to add the secrets.SEMGREP_APP_TOKEN_PUBLIC secret?

@voidd7
Copy link
Author

voidd7 commented May 14, 2024

Thanks! I assume you were able to add the secrets.SEMGREP_APP_TOKEN_PUBLIC secret?

Yep, I asked Sushil to add it at org level for me.

@ardenma ardenma had a problem deploying to gosnowflake-ci-env May 17, 2024 16:13 — with GitHub Actions Failure
@ardenma ardenma had a problem deploying to gosnowflake-ci-env May 17, 2024 19:19 — with GitHub Actions Failure
@ardenma ardenma deployed to gosnowflake-ci-env May 17, 2024 19:45 — with GitHub Actions Active
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants