Skip to main content

CodePipeline action to integrate Anchore Engine into your pipeline

Project description

cloudcomponents Logo

@cloudcomponents/cdk-codepipeline-anchore-inline-scan-action

Build Status cdkdx typescript python

CodePipeline action to integrate Anchore Engine into your pipeline

Install

TypeScript/JavaScript:

npm i @cloudcomponents/cdk-codepipeline-anchore-inline-scan-action

Python:

pip install cloudcomponents.cdk-codepipeline-anchore-inline-scan-action

How to use

# Example automatically generated without compilation. See https://github.com/aws/jsii/issues/826
from aws_cdk.core import Construct, Stack, StackProps
from aws_cdk.aws_codecommit import Repository
from aws_cdk.aws_codepipeline import Pipeline, Artifact
from aws_cdk.aws_codepipeline_actions import CodeCommitSourceAction
from cloudcomponents.cdk_codepipeline_dockerfile_linter_action import CodePipelineDockerfileLinterAction
from cloudcomponents.cdk_codepipeline_anchore_inline_scan_action import CodePipelineAnchoreInlineScanAction
class ContainerAuditStack(Stack):
    def __init__(self, scope, id, *, description=None, env=None, stackName=None, tags=None, synthesizer=None, terminationProtection=None, analyticsReporting=None):
        super().__init__(scope, id, description=description, env=env, stackName=stackName, tags=tags, synthesizer=synthesizer, terminationProtection=terminationProtection, analyticsReporting=analyticsReporting)

        repository = Repository(self, "Repository",
            repository_name="container-audit-repository"
        )

        source_artifact = Artifact()

        source_action = CodeCommitSourceAction(
            action_name="CodeCommit",
            repository=repository,
            output=source_artifact,
            branch="master"
        )

        linter_action = CodePipelineDockerfileLinterAction(
            action_name="Linter",
            input=source_artifact
        )

        vuln_scan_action = CodePipelineAnchoreInlineScanAction(
            action_name="VulnScan",
            input=source_artifact
        )

        Pipeline(self, "Pipeline",
            pipeline_name="container-audit-pipeline",
            stages=[StageProps(
                stage_name="Source",
                actions=[source_action]
            ), StageProps(
                stage_name="Audit",
                actions=[linter_action, vuln_scan_action]
            )
            ]
        )

API Reference

See API.md.

Example

See more complete examples.

License

MIT

Project details


Release history Release notifications | RSS feed

This version

1.2.1

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

File details

Details for the file cloudcomponents.cdk-codepipeline-anchore-inline-scan-action-1.2.1.tar.gz.

File metadata

File hashes

Hashes for cloudcomponents.cdk-codepipeline-anchore-inline-scan-action-1.2.1.tar.gz
Algorithm Hash digest
SHA256 e15a124afcc1364fbdf1cc9da85ee1d836fc3927dfb36020aa0993d6e966eaf8
MD5 8f47256fcf326f0f07182bca73614c9e
BLAKE2b-256 57303c3ef765415e83d8c3843fc6ff5644555da68eb76393af54a7cc1d143d46

See more details on using hashes here.

File details

Details for the file cloudcomponents.cdk_codepipeline_anchore_inline_scan_action-1.2.1-py3-none-any.whl.

File metadata

File hashes

Hashes for cloudcomponents.cdk_codepipeline_anchore_inline_scan_action-1.2.1-py3-none-any.whl
Algorithm Hash digest
SHA256 09708f4e9b37c4d0f6ba3444f4c95ff41f88713db13c20bd668115d004c5eb42
MD5 05a179cceeea7d860cc69068c508a698
BLAKE2b-256 4152efb289943074c8e1a05a80298c415e603914402192a223f7462e4a1710cb

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page