Skip to content

Commit ea0da7b

Browse files
Add cred scan to CI (PowerShell#40)
1 parent 8069b24 commit ea0da7b

File tree

1 file changed

+34
-0
lines changed

1 file changed

+34
-0
lines changed

.vsts-ci/misc-analysis.yml

Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
name: MMI-$(Build.BuildId)
2+
trigger:
3+
branches:
4+
include:
5+
- master
6+
- release*
7+
pr:
8+
branches:
9+
include:
10+
- master
11+
- release*
12+
13+
jobs:
14+
- job: credscan
15+
displayName: 'Secret Scan'
16+
pool: 'Hosted VS2017'
17+
18+
steps:
19+
- task: securedevelopmentteam.vss-secure-development-tools.build-task-credscan.CredScan@2
20+
displayName: 'Scan for secrets'
21+
inputs:
22+
debugMode: false
23+
24+
- task: securedevelopmentteam.vss-secure-development-tools.build-task-publishsecurityanalysislogs.PublishSecurityAnalysisLogs@2
25+
displayName: 'Publish Secret Scan Logs to Build Artifacts'
26+
continueOnError: true
27+
28+
- task: securedevelopmentteam.vss-secure-development-tools.build-task-postanalysis.PostAnalysis@1
29+
displayName: 'Check for failures'
30+
inputs:
31+
CredScan: true
32+
ToolLogsNotFoundAction: Error
33+
34+

0 commit comments

Comments
 (0)