diff --git a/.github/workflows/aquasec-night-scan.yml b/.github/workflows/aquasec-night-scan.yml new file mode 100644 index 0000000..ed7d67b --- /dev/null +++ b/.github/workflows/aquasec-night-scan.yml @@ -0,0 +1,36 @@ +name: AquaSec Night Scan + +on: + schedule: + - cron: '43 2 * * *' + workflow_dispatch: + inputs: + dry-run: + description: Enable Dry Run mode + required: false + type: boolean + default: false + +concurrency: + group: aquasec-night-scan-${{ github.ref }} + cancel-in-progress: true + +permissions: + contents: read + actions: read + issues: write + +jobs: + aquasec-night-scan: + uses: AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml@d3e4ff77b60db1bcd5b485ccedf19d2216d39621 + with: + dry-run: ${{ inputs.dry-run || false }} + min-severity: 'high' + project-number: 193 + project-org: 'absa-group' + secrets: + AQUA_KEY: ${{ secrets.AQUA_KEY }} + AQUA_SECRET: ${{ secrets.AQUA_SECRET }} + AQUA_GROUP_ID: ${{ secrets.AQUA_GROUP_ID }} + AQUA_REPOSITORY_ID: ${{ secrets.AQUA_REPOSITORY_ID }} + TEAMS_WEBHOOK_URL: ${{ secrets.TEAMS_WEBHOOK_URL }}