Skip to content

Add scorecards support for Chainloop #427

@migmartri

Description

@migmartri

Add support for a new material type that contains the result of running OSSF Scorecard

For example, this action does 3 things

  • analyze the repository
  • sends the result upstream to scorecards service.
  • creates an output sarif file that it's uploaded to GitHub security advisory and as an artifact.

We should be able to take that file and send it to Chainloop as OSSF_SCORECARD material type.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions