Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add SECURITY-INSIGHTS.yml #1315

Merged
merged 1 commit into from
Oct 31, 2023
Merged

Add SECURITY-INSIGHTS.yml #1315

merged 1 commit into from
Oct 31, 2023

Conversation

jkremser
Copy link
Member

add SECURITY-INSIGHTS.yml which is required by clo monitor

HOW TO RUN CI ---

By default, all the checks will be run automatically. Furthermore, when changing website-related stuff, the preview will be generated by the netlify bot.

Heavy tests

Add the heavy-tests label on this PR if you want full-blown tests that include more than 2-cluster scenarios.

Debug tests

If the test suite is failing for you, you may want to try triggering Re-run all jobs (top right) with debug logging enabled. It will also make the print debug action more verbose.

Signed-off-by: Jirka Kremser <[email protected]>
Copy link
Collaborator

@kuritka kuritka left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

thx @jkremser 👍

dependencies-lists:
- https://github.com/k8gb-io/k8gb/blob/master/go.mod
sbom:
- sbom-file: https://github.com/k8gb-io/k8gb/releases/download/v0.11.5/k8gb_0.11.5_linux_amd64.tar.gz.sbom.json
Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

got inspired in here https://github.com/openfga/openfga/blob/main/SECURITY-INSIGHTS.yml#L100 if we have to bump this every time we release (same for line 8), we can use renovate for this. It supports custom regexp based substitution

@jkremser jkremser merged commit 2b125de into master Oct 31, 2023
@jkremser jkremser deleted the add-SECURITY-INSIGHTS branch October 31, 2023 15:17
@ytsarev
Copy link
Member

ytsarev commented Oct 31, 2023

@jkremser very nice, thanks man

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants