Sign inSign up

mmcamore/code-keeper

By mmcamore

•Updated almost 4 years ago

Dedicated image for secret discovery, static code, containers and IaC analysis.

Image
0

1.0K

mmcamore/code-keeper repository overview

⁠Code Keeper (alpha development)

Repository: https://gitlab.com/mmcamore/code-keeper⁠

Base imagealpine:latest
Secrets discoverygit-secrets
Infrastrure definition analysischeckov
Static code analysisgrype
Container analysisgrype

⁠Getting started

code-keeper is a dedicated image for static code analysis, container analysis, IaC analysis and secret discovery.

You can use it locally or from our favourite ci/cd tool.

docker pull mmcamore/code-keeper
docker run -v $(pwd):/var/code -it mmcamore/code-keeper sh
analysis:
    image: mmcamore/code-keeper
    stage: demo
    script:
        - git-secrets --register-aws
        - git-secrets --scan-history
        - checkov --directory ./examples/terraform
        - grype mmcamore/code-keeper:latest --add-cpes-if-none
        - grype dir:./examples/js --exclude 'examples/js/node_modules/**'

Take a look to our .gitlab-ci.yml⁠ to check better examples.

⁠Copyrights

Icon: Knight icons created by max.icons - Flaticon⁠

Tag summary

Content type

Image

Digest

sha256:ba15a94b5…

Size

165.1 MB

Last updated

almost 4 years ago

docker pull mmcamore/code-keeper