ci-includes-yml/pipelines/templates/security.yml
Durp 1828e12361 Update 6 files
- /pipelines/templates/security.yml
- /pipelines/docker-build-generic.yml
- /pipelines/gitlab_generic_packages.yml
- /pipelines/helm.yml
- /pipelines/octo-templates.yml
- /pipelines/terraform.yml
2026-02-27 11:37:34 +00:00

43 lines
816 B
YAML

stages:
- build
include:
- template: Security/Secret-Detection.gitlab-ci.yml
- project: 'durfy/ci-includes/yml'
ref: 'main'
file:
- 'jobs/codescan.yml'
- 'jobs/sonarqube.yml'
- 'rules/rules.yml'
secret_detection:
stage: validate
rules:
- !reference [.mr_only_rules, rules]
allow_failure: false
generate_sbom:
extends: .generate_sbom
stage: build
needs:
- job: docker-build
optional: true
artifacts: true
rules:
- !reference [.mr_only_rules, rules]
generate_cve:
extends: .generate_cve
stage: build
needs:
- job: generate_sbom
artifacts: true
rules:
- !reference [.mr_only_rules, rules]
sonarqube:
extends: .sonarcloud-check
stage: validate
allow_failure: true
rules:
- !reference [.sonarqube_rules, rules]