Skip to content

fix: refactor code and remove npm packages to eliminate vulnerabiliti… #6

fix: refactor code and remove npm packages to eliminate vulnerabiliti…

fix: refactor code and remove npm packages to eliminate vulnerabiliti… #6

name: Checkmarx SAST Scan
on:
push:
branches:
- taxgrid
jobs:
build:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v2
- name: Checkmarx CxFlow Action
uses: checkmarx-ts/checkmarx-cxflow-github-action@v1.4 #Github Action version
with:
project: ${{ secrets.CHECKMARX_PROJECT }} # <-- Insert Checkmarx SAST Project Name
team: ${{ secrets.CHECKMARX_TEAMS }}
checkmarx_url: ${{ secrets.CHECKMARX_URL }} # To be stored in GitHub Secrets.
checkmarx_username: ${{ secrets.CHECKMARX_USER }} # To be stored in GitHub Secrets.
checkmarx_password: ${{ secrets.CHECKMARX_PASSWORD }} # To be stored in GitHub Secrets.
checkmarx_client_secret: ${{ secrets.CHECKMARX_CLIENT_SECRET }} # To be stored in GitHub Secrets
#break_build: false
scanners: sast
bug_tracker: NONE
preset: EY-Recommended
#params: --cx-flow.comment-script= "\ScanComment.groovy"