Skip to content

Commit

Permalink
upgrade .github/workflows/veracode-analysis.yml.
Browse files Browse the repository at this point in the history
  • Loading branch information
4k4xs4pH1r3 committed Aug 29, 2023
1 parent 71c578e commit d0d42fd
Showing 1 changed file with 7 additions and 6 deletions.
13 changes: 7 additions & 6 deletions .github/workflows/veracode-analysis.yml
Original file line number Diff line number Diff line change
Expand Up @@ -19,17 +19,17 @@ jobs:
steps:

# Checks-out your repository under $GITHUB_WORKSPACE, so your job can access it and copies all sources into ZIP file for submitting for analysis. Replace this section with your applications build steps
- uses: actions/checkout@v2
- uses: actions/checkout@master
with:
repository: ''

- uses: vimtor/action-zip@v1
- uses: vimtor/action-zip@master
with:
files: /
recursive: true
dest: veracode-pipeline-scan-results-to-sarif.zip

- uses: actions/upload-artifact@v2
- uses: actions/upload-artifact@master
with:
name: my-artifact
path: veracode-pipeline-scan-results-to-sarif.zip
Expand All @@ -40,12 +40,13 @@ jobs:
args: -O https://downloads.veracode.com/securityscan/pipeline-scan-LATEST.zip
- run: unzip -o pipeline-scan-LATEST.zip

- uses: actions/setup-java@v2
- uses: actions/setup-java@master
with:
distribution: 'ubuntu-latest'
java-version: 1.8
- run: java -jar pipeline-scan.jar --veracode_api_id "${{secrets.VERACODE_API_ID}}" --veracode_api_key "${{secrets.VERACODE_API_KEY}}" --fail_on_severity="Very High, High" --file veracode-pipeline-scan-results-to-sarif.zip
continue-on-error: true
- uses: actions/upload-artifact@v1
- uses: actions/upload-artifact@master
with:
name: ScanResults
path: results.json
Expand All @@ -54,7 +55,7 @@ jobs:
uses: veracode/veracode-pipeline-scan-results-to-sarif@master
with:
pipeline-results-json: results.json
- uses: github/codeql-action/upload-sarif@v2
- uses: github/codeql-action/upload-sarif@master
with:
# Path to SARIF file relative to the root of the repository
sarif_file: veracode-results.sarif

0 comments on commit d0d42fd

Please sign in to comment.