Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
79 commits
Select commit Hold shift + click to select a range
33f6076
Added lib
kriti-d Apr 29, 2020
07de1ad
Update config.yml
kriti-d Jun 5, 2020
1f68261
Update config.yml
kriti-d Jun 5, 2020
c203b9d
Create buildspec.yml
kriti-d Sep 23, 2020
fa516d6
Update buildspec.yml
kriti-d Sep 24, 2020
df585d1
Update buildspec.yml
kriti-d Sep 24, 2020
f8d1113
Update buildspec.yml
kriti-d Sep 24, 2020
27526ac
Update buildspec.yml
kriti-d Sep 24, 2020
dbe24fb
Update buildspec.yml
kriti-d Sep 24, 2020
8cbd27d
Update buildspec.yml
kriti-d Sep 25, 2020
0d08a3f
Update buildspec.yml
kriti-d Sep 30, 2020
2908803
Update buildspec.yml
kriti-d Sep 30, 2020
56cf2a6
Update buildspec.yml
kriti-d Sep 30, 2020
9b94a0c
Update buildspec.yml
kriti-d Sep 30, 2020
219d5de
Update buildspec.yml
kriti-d Sep 30, 2020
a43c3d4
Update buildspec.yml
kriti-d Sep 30, 2020
41f45b7
Update buildspec.yml
kriti-d Sep 30, 2020
ab58978
Update buildspec.yml
kriti-d Oct 1, 2020
3ad4da0
Update buildspec.yml
kriti-d Oct 1, 2020
1fd5e9c
Update buildspec.yml
kriti-d Oct 1, 2020
7da17ad
Update buildspec.yml
kriti-d Oct 1, 2020
c96991d
Update buildspec.yml
kriti-d Oct 1, 2020
31f2689
Update buildspec.yml
kriti-d Oct 1, 2020
a226f06
Update buildspec.yml
kriti-d Oct 1, 2020
b08822c
Update buildspec.yml
kriti-d Oct 1, 2020
0dbbe94
Update buildspec.yml
kriti-d Oct 1, 2020
fcc2f26
Update buildspec.yml
kriti-d Oct 1, 2020
86e0aa3
Update buildspec.yml
kriti-d Oct 1, 2020
dc4f29d
Update buildspec.yml
kriti-d Oct 1, 2020
8d576d2
Update buildspec.yml
kriti-d Oct 1, 2020
175ab74
Update buildspec.yml
kriti-d Oct 1, 2020
5e398e9
Update buildspec.yml
kriti-d Oct 1, 2020
2f2b6d1
Update buildspec.yml
kriti-d Oct 1, 2020
562d24d
Update buildspec.yml
kriti-d Oct 1, 2020
e019a36
Update buildspec.yml
kriti-d Oct 1, 2020
cd58561
Update buildspec.yml
kriti-d Oct 2, 2020
81a2d47
Update buildspec.yml
kriti-d Oct 2, 2020
7976eed
Update buildspec.yml
kriti-d Oct 2, 2020
b0b7f4f
Update buildspec.yml
kriti-d Oct 2, 2020
c17a65b
Update buildspec.yml
kriti-d Oct 2, 2020
b572808
Update buildspec.yml
kriti-d Oct 2, 2020
1cf3817
Update buildspec.yml
kriti-d Oct 2, 2020
e56a423
Update buildspec.yml
kriti-d Oct 2, 2020
391d85a
Update buildspec.yml
kriti-d Oct 2, 2020
a8de2bb
Update buildspec.yml
kriti-d Oct 2, 2020
1438c01
Update buildspec.yml
kriti-d Oct 2, 2020
2e674e6
Update buildspec.yml
kriti-d Oct 2, 2020
c410a9d
Update buildspec.yml
kriti-d Oct 2, 2020
9bbeb40
Update buildspec.yml
kriti-d Oct 2, 2020
ed4cb61
Update buildspec.yml
kriti-d Oct 7, 2020
bbdef03
Update buildspec.yml
kriti-d Oct 7, 2020
fce5838
Update buildspec.yml
kriti-d Oct 7, 2020
10f2ec0
Update buildspec.yml
kriti-d Oct 7, 2020
f41d4c7
Update buildspec.yml
kriti-d Oct 12, 2020
dee8785
Update buildspec.yml
kriti-d Oct 12, 2020
f9fd0ee
Update buildspec.yml
kriti-d Oct 12, 2020
db12880
Update buildspec.yml
kriti-d Oct 12, 2020
31d8f7e
Update buildspec.yml
kriti-d Oct 12, 2020
576ac43
fail on vulns of 9.8 and above
kriti-d Oct 12, 2020
2190a25
monitor project
kriti-d Oct 12, 2020
1d16153
monitor project edit command
kriti-d Oct 12, 2020
daa9c4d
Update buildspec.yml
kriti-d Oct 15, 2020
43050e9
Update buildspec.yml
kriti-d Oct 15, 2020
a2346ab
Update buildspec.yml
kriti-d Oct 15, 2020
cfcb927
Update buildspec.yml
kriti-d Oct 15, 2020
60b6afe
Update buildspec.yml
kriti-d Oct 15, 2020
94bde05
Create main.yml
kriti-d Nov 4, 2020
1caca8e
Update main.yml
kriti-d Nov 4, 2020
c1a551f
Update main.yml
kriti-d Nov 4, 2020
23e228a
Update main.yml
kriti-d Nov 4, 2020
f33e9c1
Update main.yml
kriti-d Nov 4, 2020
f3635f6
Update main.yml
kriti-d Nov 4, 2020
c4feb17
Update main.yml
kriti-d Nov 4, 2020
b7dcb46
Update main.yml
kriti-d Nov 4, 2020
449e857
Update main.yml
kriti-d Nov 4, 2020
c1fca71
Create app.Dockerfile
kriti-d Jul 15, 2021
4e8cd6f
Update main.yml
kriti-d Aug 26, 2021
968f106
removing runtime agent
kriti-d Aug 26, 2021
8d3fc06
abkjfbMerge branch 'kriti-dev' of https://github.com/kriti-d/goof int…
kriti-d Aug 26, 2021
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
51 changes: 15 additions & 36 deletions .circleci/config.yml
Original file line number Diff line number Diff line change
@@ -1,36 +1,15 @@
version: 2 # use CircleCI 2.0
jobs: # a collection of steps
build: # runs not using Workflows must have a `build` job as entry point
working_directory: ~/goof # directory where steps will run
docker: # run the steps with Docker
- image: circleci/node # ...with this image as the primary container; this is where all `steps` will run
steps: # a collection of executable commands
- checkout # special step to check out source code to working directory
- run:
name: update-npm
command: 'sudo npm install -g npm@latest'
- run:
name: install-snyk
command: 'sudo npm install -g snyk'
- run: # installs json to html mapper
name: install-snyk-to-html
command: 'sudo npm install -g snyk-to-html'
- run: # run snyk auth - authenticate snyk use environment variables to add token
name: snyk auth
command: snyk auth $SNYK_TOKEN
- run: # run snyk monitor
name: snyk monitor
command: snyk monitor
# - run: # output to HTML
# name: snyk test to HTML
# command: snyk test --json | snyk-to-html -o results.html
- run: # build image
name: build image
command: docker build -t goof_docker .
- run: # snyk test image
name: snyk test image
command: snyk test --docker goof_docker
# - store_artifacts:
# path: results.html
# destination: results.html

version: 2.1
orbs:
snyk: snyk/[email protected]
jobs:
build:
docker:
- image: 'circleci/node:4.8.2'
steps:
- checkout
- run: npm install -q
- snyk/scan:
fail-on-issues: false
monitor-on-build: true
project: 'goof-circle'
token-variable: $SNYK_TOKEN
19 changes: 19 additions & 0 deletions .github/workflows/main.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,19 @@
name: Snyk Code (SAST)
on:
push:
jobs:
snyk:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v2
- name: Run Snyk to check SAST issues
uses: snyk/actions/setup@master
- name: Snyk Code Test
run: snyk code test --sarif > snyk.sarif
env:
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN}
- name: Upload results to Github Code Scanning
uses: github/codeql-action/upload-sarif@v1
with:
sarif_file: snyk_sarif

1 change: 1 addition & 0 deletions app.Dockerfile
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
FROM node:14.17
20 changes: 20 additions & 0 deletions buildspec.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,20 @@
version: 0.2

env:
parameter-store:
# Requires that you have a secure string in AWS Secret Manager
SNYK_TOKEN: "SNYK_TOKEN"
SNYK_ORG_ID: "SNYK_ORG_ID"
JIRA_PROJECT_ID: "JIRA_PROJECT_ID"

phases:
install:
commands:
- npm install -g snyk
- cd /tmp && wget https://github.com/snyk-tech-services/jira-tickets-for-new-vulns/releases/download/0.4.0/snyk-jira-sync-linux
- chmod -R +x snyk-jira-sync-linux && mv snyk-jira-sync-linux /codebuild/user/bin/ && cd -
build:
commands:
- npm install
- npm test # Run your unit tests, etc
- snyk-jira-sync-linux -orgID="${SNYK_ORG_ID}" -token="${SNYK_TOKEN}" -jiraProjectID="${JIRA_PROJECT_ID}" -severity=high
Loading