foldsite/.gitea/workflows/datadog-static-analysis.yml
Tanishq Dubey 90d20978b1
Some checks failed
Datadog Secrets Scanning / Datadog Static Analyzer (push) Successful in 14s
Datadog Software Composition Analysis / Datadog SBOM Generation and Upload (push) Successful in 15s
Release / build (push) Successful in 37s
Release / publish_head (push) Successful in 35s
Datadog Static Analysis / Datadog Static Analyzer (push) Failing after 1m33s
Update .gitea/workflows/datadog-static-analysis.yml
2025-03-21 12:36:10 -04:00

29 lines
906 B
YAML

on: [push]
name: Datadog Static Analysis
jobs:
static-analysis:
runs-on: ubuntu-latest
name: Datadog Static Analyzer
steps:
- name: Checkout
uses: actions/checkout@v3
- name: Check code meets quality and security standards
id: datadog-static-analysis
uses: DataDog/datadog-static-analyzer-github-action@v1
with:
dd_api_key: ${{ secrets.DD_API_KEY }}
dd_app_key: ${{ secrets.DD_APP_KEY }}
dd_site: datadoghq.com
cpu_count: 2
- name: Run Semgrep
run: |
python3 -m pip install --break-system-package semgrep
semgrep scan -o /tmp/semgrep.sarif
cat /tmp/semgrep.sarif
apt-get update && apt-get install -y software-properties-common npm
npm install npm@latest -g
npm install n -g
npm install -g @datadog/datadog-ci
datadog-ci sarif upload /tmp/semgrep.sarif