Skip to content

Add GitHub Action: ShiftLeft NextGen Static Analysis#12

Merged
nishfath merged 2 commits intomainfrom
shiftleft-action-config-1636134845
Jan 31, 2024
Merged

Add GitHub Action: ShiftLeft NextGen Static Analysis#12
nishfath merged 2 commits intomainfrom
shiftleft-action-config-1636134845

Conversation

@nishfath
Copy link
Owner

@nishfath nishfath commented Nov 5, 2021

ShiftLeft Logo

This pull request adds a GitHub Action workflow file that executes ShiftLeft CORE's NextGen Static Application Security Testing (NG SAST) on this PR. Once merged, it will also execute NG SAST on all future PRs opened in this repository.

Visit shiftleft.io to see the security findings for this repository.

We've done a few things on your behalf

  • Created a new branch and opened this pull request
  • Generated a unique secret SHIFTLEFT_ACCESS_TOKEN to allow GitHub Actions in this repository to communicate with the ShiftLeft API
  • Created a GitHub Action that will send this pull request to ShiftLeft for analysis
  • Added a status check that displays the result of the GitHub Action

Questions? Comments? Want to learn more? Get in touch with us or check out our documentation.

@github-actions
Copy link

github-actions bot commented Nov 5, 2021

ShiftLeft Logo

Summary

ShiftLeft NextGen Static Analysis detected 34 findings in this PR

Severity Count
Critical 22
Moderate 11
Info 0

Additionally there are 1 secrets leaked, and 0 vulnerabilities
inherited from OSS components.

Build Rules

Build rule with ID "allow-zero-findings" failed because it matched 33 findings and the configured threshold is 0

Get more information about this scan.

@nishfath nishfath merged commit a54d595 into main Jan 31, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant