Skip to content
Merged
Show file tree
Hide file tree
Changes from 65 commits
Commits
Show all changes
72 commits
Select commit Hold shift + click to select a range
5e5b42b
Changed identification of docker files to be case insensitive on file…
cx-andre-pereira Mar 11, 2026
d410ef8
removed legacy redundant function 'isDockerfile' from analyzer
cx-andre-pereira Mar 11, 2026
dd61304
Improved dockerfile identification to account for relevant folder nam…
cx-andre-pereira Mar 11, 2026
9300974
Fixed 'dockerfile' keyword not being recognized as a valid file exten…
cx-andre-pereira Mar 12, 2026
c6b449d
Minor optimization
cx-andre-pereira Mar 12, 2026
bc352b4
Initial test files/cases plus minor changes to supported dockerfile f…
cx-andre-pereira Mar 12, 2026
641eb16
Added new helper function 'isDockerfileExtension' to get_extension ut…
cx-andre-pereira Mar 12, 2026
a02c969
reverted accidental query change, fixed linting errors, fixed test er…
cx-andre-pereira Mar 12, 2026
a4dc3d3
linting fix and optimized case of file named dockerfile without exten…
cx-andre-pereira Mar 12, 2026
4fc7fa4
More changes to fix go lint, d variable so 'dockerfile' is not used t…
cx-andre-pereira Mar 12, 2026
215f9d4
Added samples for case insensitive testing on dockerfiles, added E2E …
cx-andre-pereira Mar 13, 2026
552340c
fix for E2E
cx-andre-pereira Mar 13, 2026
816fad5
Changed relevant functions to always treat/set the extension of valid…
cx-andre-pereira Mar 15, 2026
45bafb3
Removed last mention of 'dockerfile' without dot notation
cx-andre-pereira Mar 16, 2026
1e91259
Changed 'gitignore' check for better check order in 'GetExtension' fu…
cx-andre-pereira Mar 16, 2026
426d3fc
Slightly more restrictive check to FROM command to ensure it has a tr…
cx-andre-pereira Mar 16, 2026
3343c80
Updates to functions, removed unnecessary if statement on scan.go and…
cx-andre-pereira Mar 17, 2026
caec2cf
fix previous commit
cx-andre-pereira Mar 17, 2026
8b4232f
fix analyzer uni tests
cx-andre-pereira Mar 17, 2026
e9ab29d
simplified new if condition
cx-andre-pereira Mar 17, 2026
4f79e00
lint fix
cx-andre-pereira Mar 17, 2026
b7c14b9
fixed analyze unit tests, with names ending in 'gitignore' no longer …
cx-andre-pereira Mar 17, 2026
bfb6370
Case-insensitive unit tests for dockerfile samples
cx-andre-pereira Mar 17, 2026
16f73f3
Slight changes to new test
cx-andre-pereira Mar 17, 2026
4a0eb92
Slight simplification of new docker/parser unit test
cx-andre-pereira Mar 17, 2026
04dd717
Mini fix on insensitive_sample
cx-andre-pereira Mar 19, 2026
a304aae
Changed E2E to 106 to fix merge conflict
cx-andre-pereira Mar 19, 2026
15c22eb
fix E2E tests
cx-andre-pereira Mar 19, 2026
40806ea
Final E2E fix
cx-andre-pereira Mar 19, 2026
bfb0e3b
Update to 'Docker' related documentation
cx-andre-pereira Mar 20, 2026
ec0307f
Requested change - made extDockerfile a constant
cx-andre-pereira Mar 23, 2026
1ccf069
Fixed E2E 106 fixture 'RESULT' file name
cx-andre-pereira Mar 23, 2026
ae10784
Refactor to 'get_extension' and 'analyzer' to reduce redudancy
cx-andre-pereira Mar 23, 2026
9307b95
Lint error fix
cx-andre-pereira Mar 23, 2026
8541b79
Newline removed (lint)
cx-andre-pereira Mar 23, 2026
d22eaae
Renamed variable to prevent confusing shadowing
cx-andre-pereira Mar 23, 2026
404517e
Requested E2E change
cx-andre-pereira Mar 26, 2026
595055c
Removed .ubi8 and .debian extensions checks
cx-andre-pereira Mar 30, 2026
6bdad99
Fallback on debian and ubi removal from docker/parser to test E2E
cx-andre-pereira Mar 31, 2026
92005b5
E2E test 2
cx-andre-pereira Mar 31, 2026
6f61b90
New 'python' samples to test for edge case 'from' statements on files…
cx-andre-pereira Apr 13, 2026
dcdb010
New samples and improved, tailored regex for dockerfile FROM statemen…
cx-andre-pereira Apr 14, 2026
1a40ecc
Removed duplicated sample(negative) that was in positive test fixture…
cx-andre-pereira Apr 14, 2026
efd386c
Final fix for E2E plus the test file removal that should have been in…
cx-andre-pereira Apr 14, 2026
95c6ea7
Made UrlRegex a constant
cx-andre-pereira Apr 20, 2026
39cc71e
New samples, changed fockerfile syntax identification to aproach to e…
cx-andre-pereira Apr 21, 2026
6b5de8d
Linter fix
cx-andre-pereira Apr 21, 2026
780f9fb
The actual linter fix
cx-andre-pereira Apr 21, 2026
6736f86
fix E2E payload files changed during rebase
cx-andre-pereira Jul 8, 2026
62879ed
updated go and git base images
cx-andre-pereira Jul 27, 2026
1ec74e9
Merge branch 'master' into AST-140477--Improvement-to-dockerfile-scan…
cx-andre-pereira Jul 28, 2026
8c55d3c
fix test re using fs cuasing unexpected result during assert
cx-andre-pereira Jul 28, 2026
0b9ac2b
go mod and sum
cx-andre-pereira Jul 28, 2026
eb5d42d
Merge branch 'master' into AST-140477--Improvement-to-dockerfile-scan…
cx-andre-pereira Jul 28, 2026
18d09f8
go mod and sum update plus fix for filesystem test that is only valid…
cx-andre-pereira Jul 28, 2026
f0d4c9d
Merge branch 'master' of https://github.com/Checkmarx/kics into AST-1…
cx-andre-pereira Jul 28, 2026
bcb994b
Merge branch 'master' into AST-140477--Improvement-to-dockerfile-scan…
cx-andre-pereira Aug 5, 2026
38faff7
Merge branch 'master' into AST-140477--Improvement-to-dockerfile-scan…
cx-andre-pereira Aug 10, 2026
1c55e31
Merge branch 'master' into AST-140477--Improvement-to-dockerfile-scan…
cx-andre-pereira Aug 25, 2026
29d7a3c
Merge branch 'master' of https://github.com/Checkmarx/kics into AST-1…
cx-andre-pereira Aug 25, 2026
85e01dd
Actions re-trigger
cx-andre-pereira Aug 25, 2026
0e84943
Merge master, aligned new worker pool aproach in analyzer with my ch…
cx-andre-pereira Sep 8, 2026
735c067
Extracted file getter for path(s) to helper funcion (ci-lint fix - An…
cx-andre-pereira Sep 8, 2026
ce803ee
More linter fixes
cx-andre-pereira Sep 8, 2026
f0ec4df
Merge branch 'master' of https://github.com/Checkmarx/kics into AST-1…
cx-andre-pereira Sep 10, 2026
954512f
Merge branch 'master' of https://github.com/Checkmarx/kics into AST-1…
cx-andre-pereira Sep 11, 2026
66f1cea
Added alternative assertion in TestFileSystemSourceProvider_AddExclud…
cx-andre-pereira Sep 11, 2026
f7b9423
Improved test_too_many_levels_of_symbolic_links test for Windows erro…
cx-andre-pereira Sep 11, 2026
b120fff
Fix for the TestFileSystemSourceProvider_AddExcluded test, now with a…
cx-andre-pereira Sep 14, 2026
4262645
Merge branch 'master' of https://github.com/Checkmarx/kics into AST-1…
cx-andre-pereira Sep 14, 2026
0d0c155
Updated dockerfile git/go images
cx-andre-pereira Sep 14, 2026
3eda269
Revert to correct go image
cx-andre-pereira Sep 14, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
4 changes: 3 additions & 1 deletion docs/platforms.md
Original file line number Diff line number Diff line change
Expand Up @@ -86,7 +86,9 @@ Note that KICS recognizes this technology as Azure Resource Manager (for queries

## Docker

KICS supports scanning Docker files with any name (but with no extension) and files with `.dockerfile` extension.
KICS supports scanning Dockerfile configurations with any name (but with no extension) and files matched by either name (`Dockerfile`, `Dockerfile.<something>`), extension (`<something>.dockerfile`,`<something>.ubi8`,`<something>.debian`), or by location inside directories named `docker`, `dockerfile`, or `dockerfiles`, where all text files are verified for a valid configuration regardless of extension.

Note that every check is matched case-insensitively with the exception of the `.ubi8` and `.debian` extensions.

## Docker Compose

Expand Down
Loading
Loading