From 40dd43d74653b11542e08224f0d1e13566604b03 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 18 Dec 2020 06:40:36 +0000 Subject: [PATCH 1/7] Bump reuse from 0.11.1 to 0.12.1 Bumps [reuse](https://github.com/fsfe/reuse-tool) from 0.11.1 to 0.12.1. - [Release notes](https://github.com/fsfe/reuse-tool/releases) - [Changelog](https://github.com/fsfe/reuse-tool/blob/master/CHANGELOG.md) - [Commits](https://github.com/fsfe/reuse-tool/compare/v0.11.1...v0.12.1) Signed-off-by: dependabot[bot] --- poetry.lock | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/poetry.lock b/poetry.lock index 2865aa9b7..08183a429 100644 --- a/poetry.lock +++ b/poetry.lock @@ -587,7 +587,7 @@ socks = ["PySocks (>=1.5.6,!=1.5.7)", "win-inet-pton"] [[package]] name = "reuse" -version = "0.11.1" +version = "0.12.1" description = "reuse is a tool for compliance with the REUSE recommendations." category = "main" optional = false @@ -1070,8 +1070,8 @@ requests = [ {file = "requests-2.24.0.tar.gz", hash = "sha256:b3559a131db72c33ee969480840fff4bb6dd111de7dd27c8ee1f820f4f00231b"}, ] reuse = [ - {file = "reuse-0.11.1-py3-none-any.whl", hash = "sha256:fb15e9c605d815cc816bec690d3ecf88ecba50968b6d41d558d95e54e80bbcc4"}, - {file = "reuse-0.11.1.tar.gz", hash = "sha256:a5c539a3ccf46eff16c85590b4cc158fc614ce434b7d9dff5120ef441c591227"}, + {file = "reuse-0.12.1-py3-none-any.whl", hash = "sha256:a07fce3a43eefa2e3140a7510b6171788cc95a3c9cc840517c10d6de28c42d6d"}, + {file = "reuse-0.12.1.tar.gz", hash = "sha256:4ed065f24c5fc929ebf8853663e14ca486fe4108d7aebceebf51e2c597ec2186"}, ] schematics = [ {file = "schematics-2.1.0-py2.py3-none-any.whl", hash = "sha256:8fcc6182606fd0b24410a1dbb066d9bbddbe8da9c9509f47b743495706239283"}, From a3cf3a19981303df0cf015851acb24a0123177b2 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 21 Jan 2021 05:58:24 +0000 Subject: [PATCH 2/7] Bump dunamai from 1.5.0 to 1.5.4 Bumps [dunamai](https://github.com/mtkennerly/dunamai) from 1.5.0 to 1.5.4. - [Release notes](https://github.com/mtkennerly/dunamai/releases) - [Changelog](https://github.com/mtkennerly/dunamai/blob/master/CHANGELOG.md) - [Commits](https://github.com/mtkennerly/dunamai/compare/v1.5.0...v1.5.4) Signed-off-by: dependabot[bot] --- poetry.lock | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/poetry.lock b/poetry.lock index 2865aa9b7..c1341ad15 100644 --- a/poetry.lock +++ b/poetry.lock @@ -96,7 +96,7 @@ python-versions = ">=2.7, !=3.0.*, !=3.1.*, !=3.2.*, !=3.3.*, !=3.4.*" [[package]] name = "dunamai" -version = "1.5.0" +version = "1.5.4" description = "Dynamic version generation" category = "main" optional = false @@ -808,8 +808,8 @@ colorama = [ {file = "colorama-0.4.4.tar.gz", hash = "sha256:5941b2b48a20143d2267e95b1c2a7603ce057ee39fd88e7329b0c292aa16869b"}, ] dunamai = [ - {file = "dunamai-1.5.0-py3-none-any.whl", hash = "sha256:1f256e09537986a8b413ee0de9e7f1f264608407429fe17031b71c733b197ce4"}, - {file = "dunamai-1.5.0.tar.gz", hash = "sha256:0424b86ae37a6f23c480adb985b89866b71b3d9bde221bbd119060eef48315ed"}, + {file = "dunamai-1.5.4-py3-none-any.whl", hash = "sha256:0edbc8c37484b2db7c54b70de88c2b6ce866890440fc4bea6470cb1b88b75058"}, + {file = "dunamai-1.5.4.tar.gz", hash = "sha256:82eb8dbdad6734a6ad475a2e8d0d5167fde7b0ae0d9529da0042129ca3736523"}, ] execnet = [ {file = "execnet-1.7.1-py2.py3-none-any.whl", hash = "sha256:d4efd397930c46415f62f8a31388d6be4f27a91d7550eb79bc64a756e0056547"}, From bc748baa13de75ddfd5cc8f7e0385e1f74015db0 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 11 Feb 2021 06:10:48 +0000 Subject: [PATCH 3/7] Bump splunktaucclib from 4.0.12 to 4.0.13 Bumps [splunktaucclib]() from 4.0.12 to 4.0.13. Signed-off-by: dependabot[bot] --- poetry.lock | 25 ++++++++++++++++++++++--- 1 file changed, 22 insertions(+), 3 deletions(-) diff --git a/poetry.lock b/poetry.lock index 2865aa9b7..680f2dd0d 100644 --- a/poetry.lock +++ b/poetry.lock @@ -699,7 +699,7 @@ sortedcontainers = ">=2.2,<3.0" [[package]] name = "splunktaucclib" -version = "4.0.12" +version = "4.0.13" description = "" category = "main" optional = false @@ -935,20 +935,39 @@ markupsafe = [ {file = "MarkupSafe-1.1.1-cp35-cp35m-win32.whl", hash = "sha256:6dd73240d2af64df90aa7c4e7481e23825ea70af4b4922f8ede5b9e35f78a3b1"}, {file = "MarkupSafe-1.1.1-cp35-cp35m-win_amd64.whl", hash = "sha256:9add70b36c5666a2ed02b43b335fe19002ee5235efd4b8a89bfcf9005bebac0d"}, {file = "MarkupSafe-1.1.1-cp36-cp36m-macosx_10_6_intel.whl", hash = "sha256:24982cc2533820871eba85ba648cd53d8623687ff11cbb805be4ff7b4c971aff"}, + {file = "MarkupSafe-1.1.1-cp36-cp36m-macosx_10_9_x86_64.whl", hash = "sha256:d53bc011414228441014aa71dbec320c66468c1030aae3a6e29778a3382d96e5"}, {file = "MarkupSafe-1.1.1-cp36-cp36m-manylinux1_i686.whl", hash = "sha256:00bc623926325b26bb9605ae9eae8a215691f33cae5df11ca5424f06f2d1f473"}, {file = "MarkupSafe-1.1.1-cp36-cp36m-manylinux1_x86_64.whl", hash = "sha256:717ba8fe3ae9cc0006d7c451f0bb265ee07739daf76355d06366154ee68d221e"}, + {file = "MarkupSafe-1.1.1-cp36-cp36m-manylinux2010_i686.whl", hash = "sha256:3b8a6499709d29c2e2399569d96719a1b21dcd94410a586a18526b143ec8470f"}, + {file = "MarkupSafe-1.1.1-cp36-cp36m-manylinux2010_x86_64.whl", hash = "sha256:84dee80c15f1b560d55bcfe6d47b27d070b4681c699c572af2e3c7cc90a3b8e0"}, + {file = "MarkupSafe-1.1.1-cp36-cp36m-manylinux2014_aarch64.whl", hash = "sha256:b1dba4527182c95a0db8b6060cc98ac49b9e2f5e64320e2b56e47cb2831978c7"}, {file = "MarkupSafe-1.1.1-cp36-cp36m-win32.whl", hash = "sha256:535f6fc4d397c1563d08b88e485c3496cf5784e927af890fb3c3aac7f933ec66"}, {file = "MarkupSafe-1.1.1-cp36-cp36m-win_amd64.whl", hash = "sha256:b1282f8c00509d99fef04d8ba936b156d419be841854fe901d8ae224c59f0be5"}, {file = "MarkupSafe-1.1.1-cp37-cp37m-macosx_10_6_intel.whl", hash = "sha256:8defac2f2ccd6805ebf65f5eeb132adcf2ab57aa11fdf4c0dd5169a004710e7d"}, + {file = "MarkupSafe-1.1.1-cp37-cp37m-macosx_10_9_x86_64.whl", hash = "sha256:bf5aa3cbcfdf57fa2ee9cd1822c862ef23037f5c832ad09cfea57fa846dec193"}, {file = "MarkupSafe-1.1.1-cp37-cp37m-manylinux1_i686.whl", hash = "sha256:46c99d2de99945ec5cb54f23c8cd5689f6d7177305ebff350a58ce5f8de1669e"}, {file = "MarkupSafe-1.1.1-cp37-cp37m-manylinux1_x86_64.whl", hash = "sha256:ba59edeaa2fc6114428f1637ffff42da1e311e29382d81b339c1817d37ec93c6"}, + {file = "MarkupSafe-1.1.1-cp37-cp37m-manylinux2010_i686.whl", hash = "sha256:6fffc775d90dcc9aed1b89219549b329a9250d918fd0b8fa8d93d154918422e1"}, + {file = "MarkupSafe-1.1.1-cp37-cp37m-manylinux2010_x86_64.whl", hash = "sha256:a6a744282b7718a2a62d2ed9d993cad6f5f585605ad352c11de459f4108df0a1"}, + {file = "MarkupSafe-1.1.1-cp37-cp37m-manylinux2014_aarch64.whl", hash = "sha256:195d7d2c4fbb0ee8139a6cf67194f3973a6b3042d742ebe0a9ed36d8b6f0c07f"}, {file = "MarkupSafe-1.1.1-cp37-cp37m-win32.whl", hash = "sha256:b00c1de48212e4cc9603895652c5c410df699856a2853135b3967591e4beebc2"}, {file = "MarkupSafe-1.1.1-cp37-cp37m-win_amd64.whl", hash = "sha256:9bf40443012702a1d2070043cb6291650a0841ece432556f784f004937f0f32c"}, {file = "MarkupSafe-1.1.1-cp38-cp38-macosx_10_9_x86_64.whl", hash = "sha256:6788b695d50a51edb699cb55e35487e430fa21f1ed838122d722e0ff0ac5ba15"}, {file = "MarkupSafe-1.1.1-cp38-cp38-manylinux1_i686.whl", hash = "sha256:cdb132fc825c38e1aeec2c8aa9338310d29d337bebbd7baa06889d09a60a1fa2"}, {file = "MarkupSafe-1.1.1-cp38-cp38-manylinux1_x86_64.whl", hash = "sha256:13d3144e1e340870b25e7b10b98d779608c02016d5184cfb9927a9f10c689f42"}, + {file = "MarkupSafe-1.1.1-cp38-cp38-manylinux2010_i686.whl", hash = "sha256:acf08ac40292838b3cbbb06cfe9b2cb9ec78fce8baca31ddb87aaac2e2dc3bc2"}, + {file = "MarkupSafe-1.1.1-cp38-cp38-manylinux2010_x86_64.whl", hash = "sha256:d9be0ba6c527163cbed5e0857c451fcd092ce83947944d6c14bc95441203f032"}, + {file = "MarkupSafe-1.1.1-cp38-cp38-manylinux2014_aarch64.whl", hash = "sha256:caabedc8323f1e93231b52fc32bdcde6db817623d33e100708d9a68e1f53b26b"}, {file = "MarkupSafe-1.1.1-cp38-cp38-win32.whl", hash = "sha256:596510de112c685489095da617b5bcbbac7dd6384aeebeda4df6025d0256a81b"}, {file = "MarkupSafe-1.1.1-cp38-cp38-win_amd64.whl", hash = "sha256:e8313f01ba26fbbe36c7be1966a7b7424942f670f38e666995b88d012765b9be"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-macosx_10_9_x86_64.whl", hash = "sha256:d73a845f227b0bfe8a7455ee623525ee656a9e2e749e4742706d80a6065d5e2c"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-manylinux1_i686.whl", hash = "sha256:98bae9582248d6cf62321dcb52aaf5d9adf0bad3b40582925ef7c7f0ed85fceb"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-manylinux1_x86_64.whl", hash = "sha256:2beec1e0de6924ea551859edb9e7679da6e4870d32cb766240ce17e0a0ba2014"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-manylinux2010_i686.whl", hash = "sha256:7fed13866cf14bba33e7176717346713881f56d9d2bcebab207f7a036f41b850"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-manylinux2010_x86_64.whl", hash = "sha256:6f1e273a344928347c1290119b493a1f0303c52f5a5eae5f16d74f48c15d4a85"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-manylinux2014_aarch64.whl", hash = "sha256:feb7b34d6325451ef96bc0e36e1a6c0c1c64bc1fbec4b854f4529e51887b1621"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-win32.whl", hash = "sha256:22c178a091fc6630d0d045bdb5992d2dfe14e3259760e713c490da5323866c39"}, + {file = "MarkupSafe-1.1.1-cp39-cp39-win_amd64.whl", hash = "sha256:b7d644ddb4dbd407d31ffb699f1d140bc35478da613b441c582aeb7c43838dd8"}, {file = "MarkupSafe-1.1.1.tar.gz", hash = "sha256:29872e92839765e546828bb7754a68c418d927cd064fd4708fab9fe9c8bb116b"}, ] more-itertools = [ @@ -1105,8 +1124,8 @@ splunktalib = [ {file = "splunktalib-1.1.4.tar.gz", hash = "sha256:c336272381509e96ab63348bb46852b0562d2e16a6cfa3ac399c346c5d1e2b65"}, ] splunktaucclib = [ - {file = "splunktaucclib-4.0.12-py2.py3-none-any.whl", hash = "sha256:cb30a6e741a2a0257e7ba9f232ddcd06da9fc96ae3c3d6899a832f105b8d1f57"}, - {file = "splunktaucclib-4.0.12.tar.gz", hash = "sha256:88b9c898b45fc3dce4caaf2ae428a53ead564788c4df207edcce05c0e8bde2f3"}, + {file = "splunktaucclib-4.0.13-py2.py3-none-any.whl", hash = "sha256:9707459b3c81fe1367e89633065dbb3848e2477bc44122850f63a1decb19b3db"}, + {file = "splunktaucclib-4.0.13.tar.gz", hash = "sha256:dc6c650aee47b3d1e215723734b05754ade592e0346fbdbdccefd5ba6b7a6bdb"}, ] text-unidecode = [ {file = "text-unidecode-1.3.tar.gz", hash = "sha256:bad6603bb14d279193107714b288be206cac565dfa49aa5b105294dd5c4aab93"}, From b026e1f44898036c47cdadb58966da63f2ee81ab Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 8 Mar 2021 07:00:07 +0000 Subject: [PATCH 4/7] Bump deps/build/addonfactory_test_matrix_splunk Bumps [deps/build/addonfactory_test_matrix_splunk](https://github.com/splunk/addonfactory_test_matrix_splunk) from `a1fb974` to `416b213`. - [Release notes](https://github.com/splunk/addonfactory_test_matrix_splunk/releases) - [Commits](https://github.com/splunk/addonfactory_test_matrix_splunk/compare/a1fb9747b30ac7357d767c23208d925244ffd13d...416b21319de10c321e9a29eacfb09785fd9d41b7) Signed-off-by: dependabot[bot] --- deps/build/addonfactory_test_matrix_splunk | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/deps/build/addonfactory_test_matrix_splunk b/deps/build/addonfactory_test_matrix_splunk index a1fb9747b..416b21319 160000 --- a/deps/build/addonfactory_test_matrix_splunk +++ b/deps/build/addonfactory_test_matrix_splunk @@ -1 +1 @@ -Subproject commit a1fb9747b30ac7357d767c23208d925244ffd13d +Subproject commit 416b21319de10c321e9a29eacfb09785fd9d41b7 From 88d44a6515d1809dbcd4c427425fe7f0eb1bca82 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 8 Mar 2021 07:21:03 +0000 Subject: [PATCH 5/7] Bump poetry-dynamic-versioning from 0.12.0 to 0.12.4 Bumps [poetry-dynamic-versioning](https://github.com/mtkennerly/poetry-dynamic-versioning) from 0.12.0 to 0.12.4. - [Release notes](https://github.com/mtkennerly/poetry-dynamic-versioning/releases) - [Changelog](https://github.com/mtkennerly/poetry-dynamic-versioning/blob/master/CHANGELOG.md) - [Commits](https://github.com/mtkennerly/poetry-dynamic-versioning/compare/v0.12.0...v0.12.4) Signed-off-by: dependabot[bot] --- poetry.lock | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/poetry.lock b/poetry.lock index 6f22b2cce..3b7d72c9b 100644 --- a/poetry.lock +++ b/poetry.lock @@ -408,7 +408,7 @@ dev = ["pre-commit", "tox"] [[package]] name = "poetry-dynamic-versioning" -version = "0.12.0" +version = "0.12.4" description = "Plugin for Poetry to enable dynamic versioning based on VCS tags" category = "dev" optional = false @@ -1015,8 +1015,8 @@ pluggy = [ {file = "pluggy-0.13.1.tar.gz", hash = "sha256:15b2acde666561e1298d71b523007ed7364de07029219b604cf808bfa1c765b0"}, ] poetry-dynamic-versioning = [ - {file = "poetry-dynamic-versioning-0.12.0.tar.gz", hash = "sha256:6bab4b62125bdc8feb3cb6420d10732df1bf769f6ee06412c72c2b0bbf19e2e2"}, - {file = "poetry_dynamic_versioning-0.12.0-py3-none-any.whl", hash = "sha256:3f33ca7f5ec047d4909e3e77390d47711ffd6f70a2ad7e5efc98a389b468bbf0"}, + {file = "poetry-dynamic-versioning-0.12.4.tar.gz", hash = "sha256:8bc15c31c5cc095c1a5c9bc42582387ba2cbefa3ae230bda5a84cc834c8b28b1"}, + {file = "poetry_dynamic_versioning-0.12.4-py3-none-any.whl", hash = "sha256:29a3670de4682ef7830e99d9f5a7e179f98c85d78a332af5f6b5385b4400cb20"}, ] py = [ {file = "py-1.9.0-py2.py3-none-any.whl", hash = "sha256:366389d1db726cd2fcfc79732e75410e5fe4d31db13692115529d34069a043c2"}, @@ -1146,4 +1146,4 @@ urllib3 = [ zipp = [ {file = "zipp-3.4.0-py3-none-any.whl", hash = "sha256:102c24ef8f171fd729d46599845e95c7ab894a4cf45f5de11a44cc7444fb1108"}, {file = "zipp-3.4.0.tar.gz", hash = "sha256:ed5eee1974372595f9e416cc7bbeeb12335201d8081ca8a0743c954d4446e5cb"}, -] \ No newline at end of file +] From 5688ccdefc38637abbc5b22d62c90bd1d2d00f4b Mon Sep 17 00:00:00 2001 From: arjunkhunti-crest <69838413+arjunkhunti-crest@users.noreply.github.com> Date: Wed, 10 Mar 2021 18:39:33 +0530 Subject: [PATCH 6/7] test: Added semgrep scanning tool support (#120) * test: Added semgrep scanning tool support * Update .semgrepignore Co-authored-by: harshilgajera-crest <69803385+harshilgajera-crest@users.noreply.github.com> --- .circleci/config.yml | 43 +++++++++++++++++++++++++++++++++++++++++++ .semgrepignore | 31 +++++++++++++++++++++++++++++++ 2 files changed, 74 insertions(+) create mode 100644 .semgrepignore diff --git a/.circleci/config.yml b/.circleci/config.yml index 827d534f1..d73a132e4 100644 --- a/.circleci/config.yml +++ b/.circleci/config.yml @@ -63,6 +63,43 @@ jobs: name: Install Tools command: | pip install /tmp/workspace/dist/* --use-deprecated=legacy-resolver + + semgrep: + environment: + SEMGREP_REPO_URL: << pipeline.project.git_url >> + SEMGREP_BRANCH: << pipeline.git.branch >> + docker: + - image: returntocorp/semgrep-agent:v1 + user: root + steps: + - checkout + - run: + name: "Install Dependencies" + command: | + pip3 install --upgrade semgrep + - run: + name: "Semgrep Scan" + no_output_timeout: 1h + command: | + export SEMGREP_REPO_NAME=splunk/${CIRCLE_PROJECT_REPONAME} + python -m semgrep_agent --publish-deployment ${SEMGREP_DEPLOYMENT_ID} --publish-token ${SEMGREP_PUBLISH_TOKEN} + # Generate the Semgrep Dashboard URL + export REPO_BRANCH=$(echo "<< pipeline.git.branch >>") + DASHBOARD_URL=$(python3 -c "from urllib.parse import quote; import os; print('https://semgrep.dev/manage/findings?repo=' + quote(os.environ['SEMGREP_REPO_NAME'], safe='') + '&tab=findings&ref_type=branch&ref=' + quote(os.environ['REPO_BRANCH'], safe=''))") + echo "View Result at Semgrep Dashboard: $DASHBOARD_URL" + + # Semgrep Exclude files + dos2unix .semgrepignore + SEMGREP_EXCLUDE=$(sed "/^#/d" .semgrepignore | sed "/^:/d" | sed -r '/^\s*$/d' | sed ':a;N;$!ba;s/\n/ --exclude /g') + echo "Excluding Semgrep Files: --exclude $SEMGREP_EXCLUDE" + # Generate xml file + semgrep --config="p/r2c-ci" --config="p/r2c-security-audit" --config="p/bandit" --error --strict --timeout=0 --junit-xml -o /root/project/test-results/semgrep-scan.xml --exclude $SEMGREP_EXCLUDE + - store_artifacts: + path: test-results + destination: test-results + - store_test_results: + path: test-results + release: docker: - image: circleci/node:12 @@ -124,6 +161,12 @@ workflows: build_test: jobs: - build + - semgrep: + context: + - gdi-semgrep + filters: + branches: + only: /.*/ - test: requires: - build diff --git a/.semgrepignore b/.semgrepignore new file mode 100644 index 000000000..6c5617bed --- /dev/null +++ b/.semgrepignore @@ -0,0 +1,31 @@ +## Default semgrep ignore +# Ignore git items +.gitignore +.git/ +:include .gitignore + +# Common large directories +node_modules/ +build/ +dist/ +vendor/ +env/ +.env/ +venv/ +.venv/ +*.min.js + +# Common test directories +test/ +tests/ + +# Semgrep rules folder +.semgrep + +## Additional files to be ignored +.circleci/ +.github/ +.reuse/ +.vscode/ +.idea/ +js/ From 6d58aa2b1c4a3d37e0fc092350f8bd6ce8414c11 Mon Sep 17 00:00:00 2001 From: arjunkhunti-crest Date: Fri, 19 Mar 2021 17:59:53 +0530 Subject: [PATCH 7/7] test: fix the issue with semgrep-agent --- .circleci/config.yml | 3 ++- .semgrepignore | 1 - 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.circleci/config.yml b/.circleci/config.yml index d73a132e4..0a1c43f97 100644 --- a/.circleci/config.yml +++ b/.circleci/config.yml @@ -71,6 +71,7 @@ jobs: docker: - image: returntocorp/semgrep-agent:v1 user: root + resource_class: large steps: - checkout - run: @@ -79,7 +80,7 @@ jobs: pip3 install --upgrade semgrep - run: name: "Semgrep Scan" - no_output_timeout: 1h + no_output_timeout: 2h command: | export SEMGREP_REPO_NAME=splunk/${CIRCLE_PROJECT_REPONAME} python -m semgrep_agent --publish-deployment ${SEMGREP_DEPLOYMENT_ID} --publish-token ${SEMGREP_PUBLISH_TOKEN} diff --git a/.semgrepignore b/.semgrepignore index 6c5617bed..76b15b0d7 100644 --- a/.semgrepignore +++ b/.semgrepignore @@ -28,4 +28,3 @@ tests/ .reuse/ .vscode/ .idea/ -js/