Dedicated image for secret discovery, static code, containers and IaC analysis.
1.0K
Repository: https://gitlab.com/mmcamore/code-keeper
| Base image | alpine:latest |
| Secrets discovery | git-secrets |
| Infrastrure definition analysis | checkov |
| Static code analysis | grype |
| Container analysis | grype |
code-keeper is a dedicated image for static code analysis, container analysis, IaC analysis and secret discovery.
You can use it locally or from our favourite ci/cd tool.
docker pull mmcamore/code-keeper
docker run -v $(pwd):/var/code -it mmcamore/code-keeper sh
analysis:
image: mmcamore/code-keeper
stage: demo
script:
- git-secrets --register-aws
- git-secrets --scan-history
- checkov --directory ./examples/terraform
- grype mmcamore/code-keeper:latest --add-cpes-if-none
- grype dir:./examples/js --exclude 'examples/js/node_modules/**'
Take a look to our .gitlab-ci.yml to check better examples.
Content type
Image
Digest
sha256:ba15a94b5…
Size
165.1 MB
Last updated
almost 4 years ago
docker pull mmcamore/code-keeper