- We'll do this via the CI script, the recommended way to run scans.
- Define a container action, which makes it easy to set up a build environment for your project. You may have to customize the Dockerfile to install build dependencies.
- Declare the
SRCCLR_API_TOKENsecret. We'll use the name of the environment variable SourceClear expects for consistency. - Go to
Settings>Secretsand add a new secret with the same name. - Pass the secret to the container as an environment variable.
- Enjoy!
veracode/example-github-actions
Folders and files
| Name | Name | Last commit date | ||
|---|---|---|---|---|