diff --git a/.github/workflows/security-analysis.yml b/.github/workflows/security-analysis.yml new file mode 100644 index 0000000000..cbf4f15cba --- /dev/null +++ b/.github/workflows/security-analysis.yml @@ -0,0 +1,16 @@ +name: "Security Static Analysis" + +on: + pull_request: {} + workflow_dispatch: {} + schedule: + - cron: '3 1 14 * *' +jobs: + scan: + uses: scout24/s24-sast-action/.github/workflows/security-analysis.yml@v3 + + secrets: + GH_TOKEN: ${{ secrets.GITHUB_TOKEN }} + SEMGREP_APP_TOKEN: ${{ secrets.SEMGREP_APP_TOKEN }} + GITLEAKS_LICENSE: ${{ secrets.GITLEAKS_LICENSE }} +