From 95cf03445d2305bde5a0f3352085cd96d0e5fc2a Mon Sep 17 00:00:00 2001 From: ShiftLeft Date: Mon, 8 Jul 2024 09:59:45 -0700 Subject: [PATCH] adding ShiftLeft build rules --- shiftleft.yml | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 shiftleft.yml diff --git a/shiftleft.yml b/shiftleft.yml new file mode 100644 index 00000000..820144af --- /dev/null +++ b/shiftleft.yml @@ -0,0 +1,15 @@ +version: 2 +build_rules: + - id: Allow no critical findings + severities: + - critical + - id: Allow one OSS or container finding + finding_types: + - oss_vuln + - container + threshold: 1 + - id: Allow no reachable OSS vulnerability + finding_types: + - oss_vuln + options: + reachable: true