From 03397c087573bef5f9451c7caff1c1f4d594a27e Mon Sep 17 00:00:00 2001 From: ShiftLeft Date: Mon, 30 Sep 2024 11:03:40 -0700 Subject: [PATCH] adding ShiftLeft build rules --- shiftleft.yml | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 shiftleft.yml diff --git a/shiftleft.yml b/shiftleft.yml new file mode 100644 index 00000000..820144af --- /dev/null +++ b/shiftleft.yml @@ -0,0 +1,15 @@ +version: 2 +build_rules: + - id: Allow no critical findings + severities: + - critical + - id: Allow one OSS or container finding + finding_types: + - oss_vuln + - container + threshold: 1 + - id: Allow no reachable OSS vulnerability + finding_types: + - oss_vuln + options: + reachable: true