Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion .github/CODEOWNERS
Original file line number Diff line number Diff line change
@@ -1 +1 @@
* @checkmarx/kics
* @Checkmarx/cx-maintainers-kics
1 change: 1 addition & 0 deletions .github/workflows/prepare-release.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,7 @@ concurrency:
jobs:
prepare-release:
name: prepare for next release
environment: release
runs-on: cx-public-ubuntu-x64
permissions:
contents: write # for actions/checkout to fetch code and create-pull-request to push a branch
Expand Down
6 changes: 2 additions & 4 deletions .github/workflows/release-dkr-image.yml
Original file line number Diff line number Diff line change
@@ -1,8 +1,6 @@
name: release-docker-image

on:
release:
types: [created, published]
workflow_dispatch:

concurrency:
Expand All @@ -15,8 +13,8 @@ permissions:
jobs:
push_to_registry:
name: Push Docker image to Docker Hub
environment: release
runs-on: cx-public-ubuntu-x64
if: "!github.event.release.prerelease"
permissions:
contents: read
id-token: write # required to request the GitHub OIDC token exchanged with Docker Hub's OIDC login
Expand Down Expand Up @@ -56,7 +54,7 @@ jobs:
- name: Login to DockerHub
uses: step-security/docker-login-action@bd6978fd4ef9a5f78130095b298b8a721afcb0d8 # v4.5.1
with:
username: checkmarx
username: ${{ vars.DOCKERHUB_USERNAME }}
env:
DOCKERHUB_OIDC_CONNECTIONID: ${{ secrets.DOCKERHUB_OIDC_CONNECTIONID }}
- name: Get current date
Expand Down
7 changes: 1 addition & 6 deletions .github/workflows/update-docs-queries.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,6 @@ name: update-queries-docs

on:
workflow_dispatch:
push:
branches: [master]
paths:
- "assets/queries/**/metadata.json"
- "assets/queries/**/test/**"
- ".github/scripts/docs-generator/**"

permissions:
contents: read
Expand All @@ -19,6 +13,7 @@ concurrency:
jobs:
update-docs:
name: Update queries documentation
environment: release
permissions:
actions: write # for styfle/cancel-workflow-action to cancel/stop running workflows
contents: write # for actions/checkout to fetch code and create-pull-request to push a branch
Expand Down
4 changes: 1 addition & 3 deletions .github/workflows/update-docs-release.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -2,8 +2,6 @@ name: update-docs-release

on:
workflow_dispatch:
release:
type: [published]

permissions:
contents: read
Expand All @@ -15,11 +13,11 @@ concurrency:
jobs:
update-docs-release:
name: Create new docs version
environment: release
permissions:
actions: write # for styfle/cancel-workflow-action to cancel/stop running workflows
contents: write # for Git to git push
runs-on: cx-public-ubuntu-x64
if: "!github.event.release.prerelease"
steps:
- name: Cancel Previous Runs
uses: styfle/cancel-workflow-action@85880fa0301c86cca9da44039ee3bb12d3bedbfa # 0.12.1
Expand Down
Loading