Skip to content

Push from sebafgp initiated a Security Scan πŸš€ #47

Push from sebafgp initiated a Security Scan πŸš€

Push from sebafgp initiated a Security Scan πŸš€ #47

name: SAST Scan
on: push
run-name: Push from ${{ github.actor }} initiated a Security Scan πŸš€
permissions:
contents: write
jobs:
sast-scan:
runs-on: ubuntu-latest
container: avarteqgmbh/bearer-osv-scan
steps:
- name: Checkout repo inside CI runner
uses: actions/checkout@v4
- name: Setup results file
run: |
mkdir -p scan_results
touch ./scan_results/bearer.out.json
git config --global --add safe.directory '*'
- name: SAST and Secrets Scan
working-directory: .
run: bearer scan . ./ci/configs/bearer.yml
- name: Commit changes
uses: EndBug/add-and-commit@v9
with:
config-file: "./ci/configs/bearer.yaml"
author_name: scanner-bot
author_email: [email protected]
message: '[bot] Add SAST and Secrets scan results'