QA Test Project for Cloud Formation IaC scanning
We want to ensure the new IaC scanning using kics
is scanning Cloud Formation files successfully. This can be done by spinning up a new QA test project like we have done for SAST's other analyzers.
Task
-
Create cloud formation test project | https://gitlab.com/gitlab-org/security-products/tests/cloudformation -
Add new job to the new IaC Analyzer's .gitlab-ci.yml
| gitlab-org/security-products/analyzers/kics!13 (merged) -
Ensure pipeline is passing | https://gitlab.com/gitlab-org/security-products/analyzers/kics/-/pipelines/406680732
Edited by Daniel Paul Searles