Skip to content

Commit

Permalink
Added credscan steps for python (#16136)
Browse files Browse the repository at this point in the history
  • Loading branch information
sima-zhu authored Jan 20, 2021
1 parent dd14599 commit 4e7bbb5
Show file tree
Hide file tree
Showing 3 changed files with 5,636 additions and 0 deletions.
4 changes: 4 additions & 0 deletions eng/CredScanSuppression.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,4 @@
{
"tool": "Credential Scanner",
"suppressions": []
}
17 changes: 17 additions & 0 deletions eng/pipelines/aggregate-reports.yml
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,23 @@ jobs:
vmImage: 'windows-2019'

steps:
- task: securedevelopmentteam.vss-secure-development-tools.build-task-credscan.CredScan@3
displayName: 'Run CredScan'
inputs:
suppressionsFile: 'eng\CredScanSuppression.json'
- task: securedevelopmentteam.vss-secure-development-tools.build-task-postanalysis.PostAnalysis@2
displayName: 'Post Analysis'
inputs:
GdnBreakAllTools: false
GdnBreakGdnToolCredScan: true
GdnBreakGdnToolCredScanSeverity: Error
GdnBreakBaselineFiles: $(Build.SourcesDirectory)\eng\python.gdnbaselines
GdnBreakBaselines: baseline
continueOnError: true
- task: securedevelopmentteam.vss-secure-development-tools.build-task-publishsecurityanalysislogs.PublishSecurityAnalysisLogs@3
displayName: 'Publish Security Analysis Logs'
continueOnError: true
condition: succeededOrFailed()
- template: /eng/pipelines/templates/steps/analyze_dependency.yml

- task: AzureFileCopy@2
Expand Down
Loading

0 comments on commit 4e7bbb5

Please sign in to comment.