@@ -101,6 +101,10 @@ spec:
101101 default : ' true'
102102 description : Use the package registry proxy when prefetching dependencies
103103 type : string
104+ - name : sast-target-dirs
105+ type : string
106+ default : .
107+ description : Target directories to scan with SAST tools. Multiple values should be separated with commas.
104108 results :
105109 - description : " "
106110 name : IMAGE_URL
@@ -124,7 +128,7 @@ spec:
124128 - name : name
125129 value : init
126130 - name : bundle
127- value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:b797dd453ddad669365de6de4649e3a9e37e77aa26eb9862ca079a36cbfe64a4
131+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:5a423246792ac501ea279229b42ee57da9927da441c04b5c9ff86817b0856b08
128132 - name : kind
129133 value : task
130134 resolver : bundles
@@ -171,7 +175,7 @@ spec:
171175 - name : name
172176 value : prefetch-dependencies-oci-ta
173177 - name : bundle
174- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:1b209c0d93e52e418f3e6cd4b4fd915a84e4bd7f68e1cfd0d6446133540d7f43
178+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:a2efbcdcecfa5293a622eb356a18f5c88e5714046b214fe8730b43b1a7dbb77d
175179 - name : kind
176180 value : task
177181 resolver : bundles
@@ -289,7 +293,7 @@ spec:
289293 - name : name
290294 value : deprecated-image-check
291295 - name : bundle
292- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:57d1f556982115311f603dd9a728c52a7a1d092f022e1db4560da01eca9e5d17
296+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:e78d0d3baf3c8cfc1a5ad278196b74032d9568b143a87c7a79ab780fedfb296e
293297 - name : kind
294298 value : task
295299 resolver : bundles
@@ -311,7 +315,7 @@ spec:
311315 - name : name
312316 value : clair-scan
313317 - name : bundle
314- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:cd49cdea7e5403a87c4774bd8ea10bc4e6aeb83841ff490cbe42b782779513a7
318+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:8fad4c2e2f470f82ee43d6b2ac72327b4d9c6e9cb514a678911c1c9359c29894
315319 - name : kind
316320 value : task
317321 resolver : bundles
@@ -331,7 +335,7 @@ spec:
331335 - name : name
332336 value : ecosystem-cert-preflight-checks
333337 - name : bundle
334- value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:25dcef1d9270b2e03fe6710a733171f7c7208e341fc627dac3a579088f44af34
338+ value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:e2bcf1174a6dae9969b8f12e94babe2a5881bc77a509f10823b6a9eac6392850
335339 - name : kind
336340 value : task
337341 resolver : bundles
@@ -350,6 +354,8 @@ spec:
350354 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
351355 - name : CACHI2_ARTIFACT
352356 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
357+ - name : TARGET_DIRS
358+ value : $(params.sast-target-dirs)
353359 runAfter :
354360 - build-image-index
355361 taskRef :
@@ -417,6 +423,8 @@ spec:
417423 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
418424 - name : CACHI2_ARTIFACT
419425 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
426+ - name : TARGET_DIRS
427+ value : $(params.sast-target-dirs)
420428 runAfter :
421429 - coverity-availability-check
422430 taskRef :
@@ -464,6 +472,8 @@ spec:
464472 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
465473 - name : CACHI2_ARTIFACT
466474 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
475+ - name : TARGET_DIRS
476+ value : $(params.sast-target-dirs)
467477 runAfter :
468478 - build-image-index
469479 taskRef :
@@ -490,6 +500,8 @@ spec:
490500 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
491501 - name : CACHI2_ARTIFACT
492502 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
503+ - name : TARGET_DIRS
504+ value : $(params.sast-target-dirs)
493505 runAfter :
494506 - build-image-index
495507 taskRef :
0 commit comments