Skip to main content

CodePipeline action to integrate Anchore Engine into your pipeline

Project description

cloudcomponents Logo

@cloudcomponents/cdk-codepipeline-anchore-inline-scan-action

Build Status cdkdx typescript python

CodePipeline action to integrate Anchore Engine into your pipeline

Install

TypeScript/JavaScript:

npm i @cloudcomponents/cdk-codepipeline-anchore-inline-scan-action

Python:

pip install cloudcomponents.cdk-codepipeline-anchore-inline-scan-action

How to use

# Example automatically generated without compilation. See https://github.com/aws/jsii/issues/826
from aws_cdk.core import Construct, Stack, StackProps
from aws_cdk.aws_codecommit import Repository
from aws_cdk.aws_codepipeline import Pipeline, Artifact
from aws_cdk.aws_codepipeline_actions import CodeCommitSourceAction
from cloudcomponents.cdk_codepipeline_dockerfile_linter_action import CodePipelineDockerfileLinterAction
from cloudcomponents.cdk_codepipeline_anchore_inline_scan_action import CodePipelineAnchoreInlineScanAction
class ContainerAuditStack(Stack):
    def __init__(self, scope, id, *, description=None, env=None, stackName=None, tags=None, synthesizer=None, terminationProtection=None, analyticsReporting=None):
        super().__init__(scope, id, description=description, env=env, stackName=stackName, tags=tags, synthesizer=synthesizer, terminationProtection=terminationProtection, analyticsReporting=analyticsReporting)

        repository = Repository(self, "Repository",
            repository_name="container-audit-repository"
        )

        source_artifact = Artifact()

        source_action = CodeCommitSourceAction(
            action_name="CodeCommit",
            repository=repository,
            output=source_artifact,
            branch="master"
        )

        linter_action = CodePipelineDockerfileLinterAction(
            action_name="Linter",
            input=source_artifact
        )

        vuln_scan_action = CodePipelineAnchoreInlineScanAction(
            action_name="VulnScan",
            input=source_artifact
        )

        Pipeline(self, "Pipeline",
            pipeline_name="container-audit-pipeline",
            stages=[StageProps(
                stage_name="Source",
                actions=[source_action]
            ), StageProps(
                stage_name="Audit",
                actions=[linter_action, vuln_scan_action]
            )
            ]
        )

API Reference

See API.md.

Example

See more complete examples.

License

MIT

Project details


Release history Release notifications | RSS feed

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

File details

Details for the file cloudcomponents.cdk-codepipeline-anchore-inline-scan-action-1.4.0.tar.gz.

File metadata

File hashes

Hashes for cloudcomponents.cdk-codepipeline-anchore-inline-scan-action-1.4.0.tar.gz
Algorithm Hash digest
SHA256 7a1f09bbac6e0f6bcabe4769c104417d173f06fbf37782d9e74376e6d5725b50
MD5 c59e56a17ba6c92130e49a90a956eb9d
BLAKE2b-256 49b93759acc2d04ed7398b25eeda792277da765164e3e6cd454dadcce413f659

See more details on using hashes here.

File details

Details for the file cloudcomponents.cdk_codepipeline_anchore_inline_scan_action-1.4.0-py3-none-any.whl.

File metadata

File hashes

Hashes for cloudcomponents.cdk_codepipeline_anchore_inline_scan_action-1.4.0-py3-none-any.whl
Algorithm Hash digest
SHA256 c1461f148606a25b6ac5c11d7d6cb318add0bd186e9563deb420230614ede64e
MD5 3c19676dd2b2be99ff30ee70ef90f729
BLAKE2b-256 f8c25132336fd54c6ffaca134df4edd13a33a936f0b11489f100a0c8684053c6

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page