-
Notifications
You must be signed in to change notification settings - Fork 4
39 lines (33 loc) · 917 Bytes
/
tfsec.yml
File metadata and controls
39 lines (33 loc) · 917 Bytes
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.
name: tfsec
on:
# push:
# branches: [ "develop" ]
# pull_request:
# branches: [ "develop" ]
schedule:
- cron: '44 10 * * 5'
jobs:
tfsec:
name: Run tfsec sarif report
runs-on: ubuntu-24.04
permissions:
actions: read
contents: read
security-events: write
steps:
- name: Clone repo
uses: actions/checkout@v4
- name: Run tfsec
uses: aquasecurity/tfsec-action@v1.0.3
with:
working_directory: ./
soft_fail: true
- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v2
with:
# Path to SARIF file relative to the root of the repository
sarif_file: tfsec.sarif