Skip to content

A repo for testing and demonstration purposes.

License

Notifications You must be signed in to change notification settings

gitVilla/DevSecOps

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

GitHub CodeQL

Codacy Badge

ShiftLeftSecurity Scan

YELP Detect-Secrets

Quality Gate Status

Maintainability Rating Reliability Rating Security Rating

Bugs Code Smells Coverage Duplicated Lines (%) Lines of Code Technical Debt Vulnerabilities

DevSecOps

This repo is used for testing DevSecOps practices and toolsets, and is used for demonstration purposes only.

WARNING

This repo contains code that is purposefully vulnerable and insecure. Use at your own risk!

Azure DevOps (ADO) Pipelines

The following YAML-based Azure DevOps (ADO) pipelines have been created and tested:

GitHub Actions (GHA) Workflows

The following YAML-based GitHub Actions (GHA) Workflows have been created and tested:

To-Do:

  • Add examples for:
    • Dockle
    • Docker Bench for Security
    • DockerDive
    • DockerSlim

About

A repo for testing and demonstration purposes.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Bicep 38.6%
  • C# 24.4%
  • HCL 15.6%
  • JavaScript 10.3%
  • HTML 6.4%
  • CSS 1.5%
  • Other 3.2%