Skip to content

Conversation

mairaemperley-wf
Copy link
Contributor

This is adding an initial aviary.yaml file to support Aviary/Raven scanning of this repository. Currently the file excludes the test, example, and functional_test directories from global keyword scanning, but adds no explicitly watched files or functions.

FYI @travissanderson-wf - If you know of any areas of the application that might be considered sensitive, please let me know or add them to the config directly. If you have any questions about this process please reach out in the "Infosec Forum" hipchat room.

@infosec-wf

@aviary-wf
Copy link

Raven

Number of Findings: 1

  • Watched file aviary.yaml added

As a result of the finding(s) listed above, a security review is required for this pull request.

@rmconsole-wf
Copy link

rmconsole-wf commented Oct 20, 2016

    When this pull is merged I will use the following information:
    Version: platform_detect 1.0.1
    Release Ticket(s): CP-2759


Last updated on Monday, October 31 04:35 PM CST

@travissanderson-wf
Copy link
Contributor

+1

@ericanders-wf
Copy link

security +1

aviary.yaml Outdated
version: 1

exclude:
- test?/

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@mairaemperley-wf Just noticed this - it should be either tests?/ or test/
test?/ will match both test/ and tes/

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Good catch! Fixed.

@codecov-wf
Copy link

Current coverage is 87.87% (diff: 100%)

Merging #5 into master will not change coverage

@@             master         #5   diff @@
==========================================
  Files             2          2          
  Lines            66         66          
  Methods           0          0          
  Messages          0          0          
  Branches          0          0          
==========================================
  Hits             58         58          
  Misses            8          8          
  Partials          0          0          

Sunburst

Powered by Codecov. Last update 2a2b329...ecd770b

@travissanderson-wf
Copy link
Contributor

+1

@travissanderson-wf
Copy link
Contributor

@ericanders-wf do you want to update your security review for the latest commit?

@matthewsullivan-wf
Copy link

+1 security

@travissanderson-wf travissanderson-wf merged commit 90e0bfe into Workiva:master Oct 21, 2016
@teresarevious-wf
Copy link

QA may be done on release of this

@rmconsole-wf
Copy link

QA review can be found here: https://jira.atl.workiva.net/browse/RM-15979

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

8 participants