From 0d8a5ad83bdec3b97194b7a6525657aac40eda48 Mon Sep 17 00:00:00 2001 From: ShiftLeft Date: Wed, 5 Jul 2023 11:13:03 -0400 Subject: [PATCH] adding ShiftLeft build rules --- shiftleft.yml | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 shiftleft.yml diff --git a/shiftleft.yml b/shiftleft.yml new file mode 100644 index 0000000000..820144af29 --- /dev/null +++ b/shiftleft.yml @@ -0,0 +1,15 @@ +version: 2 +build_rules: + - id: Allow no critical findings + severities: + - critical + - id: Allow one OSS or container finding + finding_types: + - oss_vuln + - container + threshold: 1 + - id: Allow no reachable OSS vulnerability + finding_types: + - oss_vuln + options: + reachable: true