Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Create sonar-secrets-dotnet pipeline #65

Closed
wants to merge 50 commits into from

Conversation

mary-georgiou-sonarsource
Copy link
Contributor

No description provided.

rita-gorokhod and others added 30 commits October 15, 2021 10:33
* Set assembly version properties
* Publish NuGet package as a pipeline artefact (commented out)
* only trigger CI builds for master and branch-* with changes in the dotnet folder
* only trigger PR builds for changes in the dotnet folder
* [.NET] Add authenticode signing to pipeline

Conditionally sign artefacts if forceSign = true OR is master OR is branch-*
* [.NET] Analyse solution on Next
Includes license file and new signing certificate
* [.NET] Implement entropy check

Fixes SLVS #2682
* [.NET] Add core matching classes and tests
* [.NET] Added AbstractSecretRule
* Implement S6334, S6335, S6337

* S6334 - Google API keys #2674
* S6335 - Google Cloud service account keys #2675
* S6337 - IBM API keys #2676
* [.NET] Added S6338 - Azure Storage Account Keys

Fixes #6338

* Added cross-checking with Java results
* [.NET] Added S6290 - AWS credentials

Fixes SLVS #2667
* [.NET] Added S6292 - Amazon MWS credentials

Fixes SLVS #2668
* [.NET] Implement S6336 - Alibaba Cloud AccessKeys

Fixes SLVS #2677
* [.NET] Improve test checking
* Added targets to protect assembly
@mary-georgiou-sonarsource mary-georgiou-sonarsource marked this pull request as draft January 12, 2023 10:35
@sonarsource-next
Copy link

SonarQube Quality Gate

Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants