Sign inSign up

forward3d/garrison-agent-bundler-audit

By forward3d

•Updated over 5 years ago

Garrison Agent - Bundler Audit

Image
0

10K+

forward3d/garrison-agent-bundler-audit repository overview

⁠Garrison Agent - Bundler Audit

This is a part of the Garrison⁠ security project. This agent provides bundler audit CVE checks against Ruby applications.

⁠Checks Provided
Function NameDescription
check_bundle_auditAlerts for any CVEs found within an Github organizations Ruby projects.
⁠Installation & Example

Docker Hub - https://hub.docker.com/r/forward3d/garrison-agent-bundler-audit/⁠

docker pull forward3d/garrison-agent-bundler-audit
docker run --rm -e "GARRISON_URL=https://garrison.internal.acme.com" -e "GARRISON_GITHUB_PRIVATE_KEY_BASE64=<base64 encoded private key>" -e "GARRISON_GITHUB_APP_ID=123456" forward3d/garrison-agent-bundler-audit check_bundle_audit
⁠Agent Specific Configuration

These are additional specific configuration options for this agent. Global agent configurations⁠ still apply.

Environmental VariableExpects
GARRISON_GITHUB_PRIVATE_KEY_BASE64Github App Private Key Base64 Encoded
GARRISON_GITHUB_APP_IDGithub App ID
GARRISON_GITHUB_EXCLUDE_REPOSComma separated list of repositories you want to exclude eg. forward3d/repo,forward/another-repo

Tag summary

Content type

Image

Digest

Size

37.8 MB

Last updated

over 5 years ago

docker pull forward3d/garrison-agent-bundler-audit