From 99926b4848c77a57c2e187921240934d0d845425 Mon Sep 17 00:00:00 2001 From: Calvin Cestari Date: Wed, 10 Jan 2024 05:31:14 -0800 Subject: [PATCH] feat: SECOPS-2525 - add semgrep job (#230) --- apollo-ios-codegen/.circleci/config.yml | 7 ++++++- apollo-ios-pagination/.circleci/config.yml | 7 ++++++- apollo-ios/.circleci/config.yml | 7 ++++++- 3 files changed, 18 insertions(+), 3 deletions(-) diff --git a/apollo-ios-codegen/.circleci/config.yml b/apollo-ios-codegen/.circleci/config.yml index 95fffb456..a3f578103 100644 --- a/apollo-ios-codegen/.circleci/config.yml +++ b/apollo-ios-codegen/.circleci/config.yml @@ -1,7 +1,7 @@ version: 2.1 orbs: - secops: apollo/circleci-secops-orb@2.0.5 + secops: apollo/circleci-secops-orb@2.0.6 workflows: security-scans: @@ -13,3 +13,8 @@ workflows: - secops-oidc git-base-revision: <<#pipeline.git.base_revision>><><> git-revision: << pipeline.git.revision >> + - secops/semgrep: + context: + - secops-oidc + - github-orb + git-base-revision: <<#pipeline.git.base_revision>><><> diff --git a/apollo-ios-pagination/.circleci/config.yml b/apollo-ios-pagination/.circleci/config.yml index 95fffb456..a3f578103 100644 --- a/apollo-ios-pagination/.circleci/config.yml +++ b/apollo-ios-pagination/.circleci/config.yml @@ -1,7 +1,7 @@ version: 2.1 orbs: - secops: apollo/circleci-secops-orb@2.0.5 + secops: apollo/circleci-secops-orb@2.0.6 workflows: security-scans: @@ -13,3 +13,8 @@ workflows: - secops-oidc git-base-revision: <<#pipeline.git.base_revision>><><> git-revision: << pipeline.git.revision >> + - secops/semgrep: + context: + - secops-oidc + - github-orb + git-base-revision: <<#pipeline.git.base_revision>><><> diff --git a/apollo-ios/.circleci/config.yml b/apollo-ios/.circleci/config.yml index 95fffb456..a3f578103 100644 --- a/apollo-ios/.circleci/config.yml +++ b/apollo-ios/.circleci/config.yml @@ -1,7 +1,7 @@ version: 2.1 orbs: - secops: apollo/circleci-secops-orb@2.0.5 + secops: apollo/circleci-secops-orb@2.0.6 workflows: security-scans: @@ -13,3 +13,8 @@ workflows: - secops-oidc git-base-revision: <<#pipeline.git.base_revision>><><> git-revision: << pipeline.git.revision >> + - secops/semgrep: + context: + - secops-oidc + - github-orb + git-base-revision: <<#pipeline.git.base_revision>><><>