Skip to content

Latest commit

 

History

History
91 lines (74 loc) · 6.29 KB

README.md

File metadata and controls

91 lines (74 loc) · 6.29 KB

GitHub CodeQL

Codacy Badge

ShiftLeftSecurity Scan

YELP Detect-Secrets

Quality Gate Status

Maintainability Rating Reliability Rating Security Rating

Bugs Code Smells Coverage Duplicated Lines (%) Lines of Code Technical Debt Vulnerabilities

DevSecOps

This repo is used for testing DevSecOps practices and toolsets, and is used for demonstration purposes only.

WARNING

This repo contains code that is purposefully vulnerable and insecure. Use at your own risk!

Azure DevOps (ADO) Pipelines

The following YAML-based Azure DevOps (ADO) pipelines have been created and tested:

GitHub Actions (GHA) Workflows

The following YAML-based GitHub Actions (GHA) Workflows have been created and tested:

To-Do:

  • Add examples for:
    • Dockle
    • Docker Bench for Security
    • DockerDive
    • DockerSlim