OWASP dependency-check for codecommit repositories
Project description
@cloudcomponents/cdk-dependency-check
OWASP dependency-check for codecommit repositories
Install
TypeScript/JavaScript:
npm i @cloudcomponents/cdk-dependency-check
Python:
pip install cloudcomponents.cdk-dependency-check
How to use
# Example automatically generated without compilation. See https://github.com/aws/jsii/issues/826
from aws_cdk.core import Construct, Stack, StackProps
from aws_cdk.aws_codecommit import Repository
from aws_cdk.aws_events import Schedule
from aws_cdk.aws_events_targets import SnsTopic
from aws_cdk.aws_s3 import Bucket
from aws_cdk.aws_sns import Topic
from aws_cdk.aws_sns_subscriptions import EmailSubscription
from cloudcomponents.cdk_dependency_check import CodeCommitDependencyCheck
class DependencyCheckStack(Stack):
def __init__(self, scope, id, *, description=None, env=None, stackName=None, tags=None, synthesizer=None, terminationProtection=None, analyticsReporting=None):
super().__init__(scope, id, description=description, env=env, stackName=stackName, tags=tags, synthesizer=synthesizer, terminationProtection=terminationProtection, analyticsReporting=analyticsReporting)
repository = Repository.from_repository_name(self, "Repository", process.env.REPOSITORY_NAME)
reports_bucket = Bucket(self, "Bucket")
# The following example runs a task every day at 4am
check = CodeCommitDependencyCheck(self, "CodeCommitDependencyCheck",
repository=repository,
reports_bucket=reports_bucket,
pre_check_command="npm i",
schedule=Schedule.cron(
minute="0",
hour="4"
)
)
check_topic = Topic(self, "CheckTopic")
check_topic.add_subscription(
EmailSubscription(process.env.DEVSECOPS_TEAM_EMAIL))
check.on_check_started("started",
target=SnsTopic(check_topic)
)
check.on_check_succeeded("succeeded",
target=SnsTopic(check_topic)
)
check.on_check_failed("failed",
target=SnsTopic(check_topic)
)
Upload HTML Reports
# Example automatically generated without compilation. See https://github.com/aws/jsii/issues/826
reports_bucket = Bucket(self, "Bucket")
# The following example runs a task every day at 4am
check = CodeCommitDependencyCheck(self, "CodeCommitDependencyCheck",
repository=repository,
reports_bucket=reports_bucket,
pre_check_command="npm i",
schedule=Schedule.cron(
minute="0",
hour="4"
)
)
API Reference
See API.md.
Example
See more complete examples.
License
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Close
Hashes for cloudcomponents.cdk-dependency-check-1.11.0.tar.gz
Algorithm | Hash digest | |
---|---|---|
SHA256 | 42b41e1a27dc9d3838bde0c73ed9def64b17b032325136889f8d6f18e9fd980c |
|
MD5 | 479f5ab324893b2a5614e162fa5e5a4a |
|
BLAKE2b-256 | 07cd999d6064fdeffd32bfdef689abf1b09e776005a8c6f7717676f021ab3408 |
Close
Hashes for cloudcomponents.cdk_dependency_check-1.11.0-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 896bd0df8e8e6a3b7923ee5364e045effcb2b9f654a209ba3bb62b986085f26f |
|
MD5 | 03904d25addb6bdbebd597c2f21d71c0 |
|
BLAKE2b-256 | 4da7a87f916302a0b4d614db9f128f380e019fb1efcf0da5e16b458a7c113df5 |