Skip to main content

CodePipeline action to integrate Anchore Engine into your pipeline

Project description

cloudcomponents Logo

@cloudcomponents/cdk-codepipeline-anchore-inline-scan-action

Build Status cdkdx typescript python

CodePipeline action to integrate Anchore Engine into your pipeline

Install

TypeScript/JavaScript:

npm i @cloudcomponents/cdk-codepipeline-anchore-inline-scan-action

Python:

pip install cloudcomponents.cdk-codepipeline-anchore-inline-scan-action

How to use

# Example automatically generated from non-compiling source. May contain errors.
from aws_cdk.aws_codepipeline import StageProps, StageProps
from aws_cdk.core import Construct, Stack, StackProps
from aws_cdk.aws_codecommit import Repository
from aws_cdk.aws_codepipeline import Pipeline, Artifact
from aws_cdk.aws_codepipeline_actions import CodeCommitSourceAction
from cloudcomponents.cdk_codepipeline_dockerfile_linter_action import CodePipelineDockerfileLinterAction
from cloudcomponents.cdk_codepipeline_anchore_inline_scan_action import CodePipelineAnchoreInlineScanAction
class ContainerAuditStack(Stack):
    def __init__(self, scope, id, *, description=None, env=None, stackName=None, tags=None, synthesizer=None, terminationProtection=None, analyticsReporting=None):
        super().__init__(scope, id, description=description, env=env, stackName=stackName, tags=tags, synthesizer=synthesizer, terminationProtection=terminationProtection, analyticsReporting=analyticsReporting)

        repository = Repository(self, "Repository",
            repository_name="container-audit-repository"
        )

        source_artifact = Artifact()

        source_action = CodeCommitSourceAction(
            action_name="CodeCommit",
            repository=repository,
            output=source_artifact,
            branch="master"
        )

        linter_action = CodePipelineDockerfileLinterAction(
            action_name="Linter",
            input=source_artifact
        )

        vuln_scan_action = CodePipelineAnchoreInlineScanAction(
            action_name="VulnScan",
            input=source_artifact
        )

        Pipeline(self, "Pipeline",
            pipeline_name="container-audit-pipeline",
            stages=[StageProps(
                stage_name="Source",
                actions=[source_action]
            ), StageProps(
                stage_name="Audit",
                actions=[linter_action, vuln_scan_action]
            )
            ]
        )

API Reference

See API.md.

Example

See more complete examples.

License

MIT

Project details


Release history Release notifications | RSS feed

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

File details

Details for the file cloudcomponents.cdk-codepipeline-anchore-inline-scan-action-1.47.0.tar.gz.

File metadata

File hashes

Hashes for cloudcomponents.cdk-codepipeline-anchore-inline-scan-action-1.47.0.tar.gz
Algorithm Hash digest
SHA256 92b0c6c24532b4302e67cea7dedb4c40c60d9afdd27bc5395af8c9f391cdc9cc
MD5 fa11e5670167cefa7604eaa0dcdca02d
BLAKE2b-256 5e4dd9c9af5da93cd4f8f7e20dbb66b06fa45b4b98c0e0217ab8c32a6a30a43c

See more details on using hashes here.

File details

Details for the file cloudcomponents.cdk_codepipeline_anchore_inline_scan_action-1.47.0-py3-none-any.whl.

File metadata

File hashes

Hashes for cloudcomponents.cdk_codepipeline_anchore_inline_scan_action-1.47.0-py3-none-any.whl
Algorithm Hash digest
SHA256 867a72e08b5000916c67d142408aa5248c1e6e17542ba4bafe4d2389474e325b
MD5 13dd558215c81f15bc089dd63d372b8a
BLAKE2b-256 73d60fe5ee8853c0c736eb4849f2577a47a7054629eedb30ca25adcf35c68828

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page