KICS GitHub Action now pulls KICS from Docker image (#37)
Signed-off-by: João Reigota <joao.reigota@checkmarx.com>
This commit is contained in:
@ -59,8 +59,11 @@ fi
|
||||
############################
|
||||
# Check for Output Path #
|
||||
############################
|
||||
|
||||
CP_PATH="./results.json"
|
||||
if [ ! -z "$INPUT_OUTPUT_PATH" ]; then
|
||||
OUTPUT_PATH_PARAM="-o $INPUT_OUTPUT_PATH"
|
||||
CP_PATH=$INPUT_OUTPUT_PATH
|
||||
else
|
||||
OUTPUT_PATH_PARAM="-o ./"
|
||||
fi
|
||||
@ -72,5 +75,15 @@ cd $GITHUB_WORKSPACE
|
||||
echo "${DATETIME} - INF : about to scan directory $INPUT_PATH"
|
||||
echo "${DATETIME} - INF : kics command kics $INPUT_PARAM $OUTPUT_PATH_PARAM $OUTPUT_FORMATS_PARAM $PLATFORM_TYPE_PARAM $PAYLOAD_PATH_PARAM $CONFIG_PATH_PARAM $EXCLUDE_PATHS_PARAM $EXCLUDE_CATEGORIES_PARAM $EXCLUDE_RESULTS_PARAM $EXCLUDE_QUERIES_PARAM $QUERIES_PARAM $VERBOSE_PARAM $IGNORE_ON_EXIT_PARAM $FAIL_ON_PARAM $TIMEOUT_PARAM $PROFILING_PARAM $BOM_PARAM $INCLUDE_QUERIES_PARAM $DISABLE_SECRETS_PARAM $DISABLE_FULL_DESCRIPTIONS_PARAM $LIBRARIES_PATH_PARAM $SECRETS_REGEXES_PATH_PARAM"
|
||||
/app/bin/kics scan --no-progress $INPUT_PARAM $OUTPUT_PATH_PARAM $OUTPUT_FORMATS_PARAM $PLATFORM_TYPE_PARAM $PAYLOAD_PATH_PARAM $CONFIG_PATH_PARAM $EXCLUDE_PATHS_PARAM $EXCLUDE_CATEGORIES_PARAM $EXCLUDE_RESULTS_PARAM $EXCLUDE_QUERIES_PARAM $QUERIES_PARAM $VERBOSE_PARAM $IGNORE_ON_EXIT_PARAM $FAIL_ON_PARAM $TIMEOUT_PARAM $PROFILING_PARAM $BOM_PARAM $INCLUDE_QUERIES_PARAM $DISABLE_SECRETS_PARAM $DISABLE_FULL_DESCRIPTIONS_PARAM $LIBRARIES_PATH_PARAM $SECRETS_REGEXES_PATH_PARAM
|
||||
echo "::set-output name=exit_code::$?"
|
||||
exit 0
|
||||
|
||||
export KICS_EXIT_CODE=$?
|
||||
|
||||
cp -r "${CP_PATH}" "/app/"
|
||||
|
||||
cd /app
|
||||
|
||||
# install and run nodejs
|
||||
apk add --update nodejs npm
|
||||
npm ci
|
||||
npm run build --if-present
|
||||
node dist/index.js
|
||||
|
Reference in New Issue
Block a user