5858 ],
5959 "requirements_build_files": ["requirements-build.txt"],
6060 "binary": {
61- "packages": "aiohappyeyeballs,aiosignal,aiosqlite,annotated-doc,annotated-types,anyio,asyncpg,cffi,chevron,cryptography,click,dill,distro,dnspython,docstring-parser,durationpy,einops,email-validator,faiss-cpu,fire,frozenlist,fsspec,google-crc32c,google-genai,grpcio,grpcio-status,h11,hf-xet,httpcore,httpx,httpx-sse,idna, importlib-metadata,jinja2,jiter,joblib,jsonschema-specifications,kubernetes,markdown-it-py,mdurl,mpmath,multidict,networkx,numpy,oauthlib,packaging,pandas,peft,pillow,prometheus-client,prompt-toolkit,propcache,psycopg2-binary,pyarrow,pyasn1-modules,pycparser,pydantic,pydantic-core,python-dateutil,pyyaml,referencing,requests-oauthlib,rpds-py,safetensors,scikit-learn,scipy,setuptools,six,sniffio,sqlalchemy,sympy,termcolor,threadpoolctl,tiktoken,tokenizers,torch,tqdm,transformers,tree-sitter,triton,typing-extensions,typing-inspection,websocket-client,websockets,wrapt,xxhash,yarl,zipp,uv,pip,maturin",
61+ "packages": "aiohappyeyeballs,aiosignal,aiosqlite,annotated-doc,annotated-types,anyio,asyncpg,cffi,chevron,cryptography,click,dill,distro,dnspython,docstring-parser,durationpy,einops,email-validator,faiss-cpu,fire,frozenlist,fsspec,google-crc32c,google-genai,grpcio,grpcio-status,h11,hf-xet,httpcore,httpx,httpx-sse,importlib-metadata,jinja2,jiter,joblib,jsonschema-specifications,kubernetes,markdown-it-py,mdurl,mpmath,multidict,networkx,numpy,oauthlib,packaging,pandas,peft,pillow,prometheus-client,prompt-toolkit,propcache,psycopg2-binary,pyarrow,pyasn1-modules,pycparser,pydantic,pydantic-core,python-dateutil,pyyaml,referencing,requests-oauthlib,rpds-py,safetensors,scikit-learn,scipy,setuptools,six,sniffio,sqlalchemy,sympy,termcolor,threadpoolctl,tiktoken,tokenizers,torch,tqdm,transformers,tree-sitter,triton,typing-extensions,typing-inspection,websocket-client,websockets,wrapt,xxhash,yarl,zipp,uv,pip,maturin",
6262 "os": "linux",
6363 "arch": "x86_64,aarch64",
6464 "py_version": 312
@@ -149,6 +149,10 @@ spec:
149149 default : ' true'
150150 description : Use the package registry proxy when prefetching dependencies
151151 type : string
152+ - name : sast-target-dirs
153+ type : string
154+ default : .
155+ description : Target directories to scan with SAST tools. Multiple values should be separated with commas.
152156 results :
153157 - description : " "
154158 name : IMAGE_URL
@@ -172,7 +176,7 @@ spec:
172176 - name : name
173177 value : init
174178 - name : bundle
175- value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:b797dd453ddad669365de6de4649e3a9e37e77aa26eb9862ca079a36cbfe64a4
179+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:5a423246792ac501ea279229b42ee57da9927da441c04b5c9ff86817b0856b08
176180 - name : kind
177181 value : task
178182 resolver : bundles
@@ -219,7 +223,7 @@ spec:
219223 - name : name
220224 value : prefetch-dependencies-oci-ta
221225 - name : bundle
222- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:1b209c0d93e52e418f3e6cd4b4fd915a84e4bd7f68e1cfd0d6446133540d7f43
226+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:a2efbcdcecfa5293a622eb356a18f5c88e5714046b214fe8730b43b1a7dbb77d
223227 - name : kind
224228 value : task
225229 resolver : bundles
@@ -342,7 +346,7 @@ spec:
342346 - name : name
343347 value : deprecated-image-check
344348 - name : bundle
345- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:57d1f556982115311f603dd9a728c52a7a1d092f022e1db4560da01eca9e5d17
349+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:e78d0d3baf3c8cfc1a5ad278196b74032d9568b143a87c7a79ab780fedfb296e
346350 - name : kind
347351 value : task
348352 resolver : bundles
@@ -369,7 +373,7 @@ spec:
369373 - name : name
370374 value : clair-scan
371375 - name : bundle
372- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:cd49cdea7e5403a87c4774bd8ea10bc4e6aeb83841ff490cbe42b782779513a7
376+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:8fad4c2e2f470f82ee43d6b2ac72327b4d9c6e9cb514a678911c1c9359c29894
373377 - name : kind
374378 value : task
375379 resolver : bundles
@@ -394,7 +398,7 @@ spec:
394398 - name : name
395399 value : ecosystem-cert-preflight-checks
396400 - name : bundle
397- value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:25dcef1d9270b2e03fe6710a733171f7c7208e341fc627dac3a579088f44af34
401+ value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:9c300728a03f41beee9a689422d66513d32ab5f804664fe561b11cebacd07799
398402 - name : kind
399403 value : task
400404 resolver : bundles
@@ -415,6 +419,8 @@ spec:
415419 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
416420 - name : ARGS
417421 value : --project-name=lightspeed-stack --report --org=dca2ca89-7e51-4a3a-b7a5-6ad5633057b8
422+ - name : TARGET_DIRS
423+ value : $(params.sast-target-dirs)
418424 runAfter :
419425 - build-image-index
420426 taskRef :
@@ -487,6 +493,8 @@ spec:
487493 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
488494 - name : CACHI2_ARTIFACT
489495 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
496+ - name : TARGET_DIRS
497+ value : $(params.sast-target-dirs)
490498 runAfter :
491499 - coverity-availability-check
492500 taskRef :
@@ -534,6 +542,8 @@ spec:
534542 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
535543 - name : CACHI2_ARTIFACT
536544 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
545+ - name : TARGET_DIRS
546+ value : $(params.sast-target-dirs)
537547 runAfter :
538548 - build-image-index
539549 taskRef :
@@ -560,6 +570,8 @@ spec:
560570 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
561571 - name : CACHI2_ARTIFACT
562572 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
573+ - name : TARGET_DIRS
574+ value : $(params.sast-target-dirs)
563575 runAfter :
564576 - build-image-index
565577 taskRef :
@@ -629,7 +641,7 @@ spec:
629641 - name : name
630642 value : rpms-signature-scan
631643 - name : bundle
632- value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:1d807f6be3be2bd8bff76321e9599bbafce8196dcd9597eeffd9df65466682af
644+ value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:d4e3499ad4af6869470233bef6faaa1bdd69ef56276841eeec93ce6e62deeb93
633645 - name : kind
634646 value : task
635647 resolver : bundles
0 commit comments