@@ -7,9 +7,8 @@ metadata:
77 build.appstudio.redhat.com/pull_request_number : ' {{pull_request_number}}'
88 build.appstudio.redhat.com/target_branch : ' {{target_branch}}'
99 pipelinesascode.tekton.dev/max-keep-runs : " 3"
10- pipelinesascode.tekton.dev/on-cel-expression : event == "pull_request" && target_branch
11- == "main"
12- creationTimestamp : null
10+ pipelinesascode.tekton.dev/on-cel-expression : event == "pull_request" && target_branch == "main"
11+ creationTimestamp :
1312 labels :
1413 appstudio.openshift.io/application : application-service
1514 appstudio.openshift.io/component : application-service
4342 - name : name
4443 value : show-sbom
4544 - name : bundle
46- value : quay.io/konflux-ci/tekton-catalog/task-show-sbom:0.1@sha256:52f8b96b96ce4203d4b74d850a85f963125bf8eef0683ea5acdd80818d335a28
45+ value : quay.io/konflux-ci/tekton-catalog/task-show-sbom:0.1@sha256:1b1df4da95966d08ac6a5b8198710e09e68b5c2cdc707c37d9d19769e65884b2
4746 - name : kind
4847 value : task
4948 resolver : bundles
6261 - name : name
6362 value : summary
6463 - name : bundle
65- value : quay.io/konflux-ci/tekton-catalog/task-summary:0.2@sha256:d97c04ab42f277b1103eb6f3a053b247849f4f5b3237ea302a8ecada3b24e15b
64+ value : quay.io/konflux-ci/tekton-catalog/task-summary:0.2@sha256:3f6e8513cbd70f0416eb6c6f2766973a754778526125ff33d8e3633def917091
6665 - name : kind
6766 value : task
6867 resolver : bundles
@@ -78,13 +77,11 @@ spec:
7877 name : output-image
7978 type : string
8079 - default : .
81- description : Path to the source code of an application's component from where
82- to build image.
80+ description : Path to the source code of an application's component from where to build image.
8381 name : path-context
8482 type : string
8583 - default : Dockerfile
86- description : Path to the Dockerfile inside the context specified by parameter
87- path-context
84+ description : Path to the Dockerfile inside the context specified by parameter path-context
8885 name : dockerfile
8986 type : string
9087 - default : " false"
@@ -108,8 +105,7 @@ spec:
108105 name : java
109106 type : string
110107 - default : " "
111- description : Image tag expiration time, time values could be something like
112- 1h, 2d, 3w for hours, days, and weeks, respectively.
108+ description : Image tag expiration time, time values could be something like 1h, 2d, 3w for hours, days, and weeks, respectively.
113109 name : image-expires-after
114110 - default : " false"
115111 description : Build a source image.
@@ -128,9 +124,6 @@ spec:
128124 - description : " "
129125 name : CHAINS-GIT_COMMIT
130126 value : $(tasks.clone-repository.results.commit)
131- - description : " "
132- name : JAVA_COMMUNITY_DEPENDENCIES
133- value : $(tasks.build-container.results.JAVA_COMMUNITY_DEPENDENCIES)
134127 tasks :
135128 - name : init
136129 params :
@@ -145,7 +138,7 @@ spec:
145138 - name : name
146139 value : init
147140 - name : bundle
148- value : quay.io/konflux-ci/tekton-catalog/task-init:0.2@sha256:f239f38bba3a8351c8cb0980fde8e2ee477ded7200178b0f45175e4006ff1dca
141+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.2@sha256:66e90d31e1386bf516fb548cd3e3f0082b5d0234b8b90dbf9e0d4684b70dbe1a
149142 - name : kind
150143 value : task
151144 resolver : bundles
@@ -162,7 +155,7 @@ spec:
162155 - name : name
163156 value : git-clone
164157 - name : bundle
165- value : quay.io/konflux-ci/tekton-catalog/task-git-clone:0.1@sha256:2cccdf8729ad4d5adf65e8b66464f8efa1e1c87ba16d343b4a6c621a2a40f7e1
158+ value : quay.io/konflux-ci/tekton-catalog/task-git-clone:0.1@sha256:7939000e2f92fc8b5d2c4ee4ba9000433c5aa7700d2915a1d4763853d5fd1fd4
166159 - name : kind
167160 value : task
168161 resolver : bundles
@@ -187,7 +180,7 @@ spec:
187180 - name : name
188181 value : prefetch-dependencies
189182 - name : bundle
190- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies:0.1 @sha256:f53fe5482599b39ae2d1004cf09a2026fd9dd3822ab6ef46b51b4a398b0a3232
183+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies:0.2 @sha256:afaf24519f78c76bd6e3c00c24ecb8918a623210fb7c6ee9aaf5fbaeba1f6c7b
191184 - name : kind
192185 value : task
193186 resolver : bundles
@@ -222,7 +215,7 @@ spec:
222215 - name : name
223216 value : buildah
224217 - name : bundle
225- value : quay.io/konflux-ci/tekton-catalog/task-buildah:0.2 @sha256:11b7f08ddaa281fcf40494a2a2f79e0aebcaa3e7da93790fecad4d46983648d2
218+ value : quay.io/konflux-ci/tekton-catalog/task-buildah:0.4 @sha256:fc7437e1fc19d7a2b468e529f7fbc372ca139f194ec5d8ea28fe48b0817ec6c0
226219 - name : kind
227220 value : task
228221 resolver : bundles
@@ -237,15 +230,17 @@ spec:
237230 - name : build-source-image
238231 params :
239232 - name : BINARY_IMAGE
240- value : $(params.output-image)
233+ value : $(tasks.build-container.results.IMAGE_URL)
234+ - name : BINARY_IMAGE_DIGEST
235+ value : $(tasks.build-container.results.IMAGE_DIGEST)
241236 runAfter :
242237 - build-container
243238 taskRef :
244239 params :
245240 - name : name
246241 value : source-build
247242 - name : bundle
248- value : quay.io/konflux-ci/tekton-catalog/task-source-build:0.1 @sha256:53a41b0838b61cbacc7ecd4ffd87cf3f41b28a4aa9e095fe95779982c688dc85
243+ value : quay.io/konflux-ci/tekton-catalog/task-source-build:0.3 @sha256:1fdda7563f21340d6243c8738934a58adffd8253706b423d1c4ec5e26ba5fae0
249244 - name : kind
250245 value : task
251246 resolver : bundles
@@ -274,7 +269,7 @@ spec:
274269 - name : name
275270 value : deprecated-image-check
276271 - name : bundle
277- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.4 @sha256:443ffa897ee35e416a0bfd39721c68cbf88cfa5c74c843c5183218d0cd586e82
272+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5 @sha256:3c8b81fa868e27c6266e7660a4bfb4c822846dcf4304606e71e20893b0d3e515
278273 - name : kind
279274 value : task
280275 resolver : bundles
@@ -296,7 +291,7 @@ spec:
296291 - name : name
297292 value : clair-scan
298293 - name : bundle
299- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.2@sha256:90e371fe7ec2288259a906bc1fd49c53b8b97a0b0b02da0893fb65e3be2a5801
294+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.2@sha256:d354939892f3a904223ec080cc3771bd11931085a5d202323ea491ee8e8c5e43
300295 - name : kind
301296 value : task
302297 resolver : bundles
@@ -306,14 +301,19 @@ spec:
306301 values :
307302 - " false"
308303 - name : sast-snyk-check
304+ params :
305+ - name : image-digest
306+ value : $(tasks.build-container.results.IMAGE_DIGEST)
307+ - name : image-url
308+ value : $(tasks.build-container.results.IMAGE_URL)
309309 runAfter :
310310 - clone-repository
311311 taskRef :
312312 params :
313313 - name : name
314314 value : sast-snyk-check
315315 - name : bundle
316- value : quay.io/konflux-ci/tekton-catalog/task-sast-snyk-check:0.2 @sha256:eb7c643130f226c345b3602dca280e6f8cd6f90f948503918d5a2677bf0610f7
316+ value : quay.io/konflux-ci/tekton-catalog/task-sast-snyk-check:0.4 @sha256:da2344f6dae50fc14892d818aee128f9d5df32d0d98dddb504e721408a9fb13d
317317 - name : kind
318318 value : task
319319 resolver : bundles
@@ -338,7 +338,7 @@ spec:
338338 - name : name
339339 value : clamav-scan
340340 - name : bundle
341- value : quay.io/konflux-ci/tekton-catalog/task-clamav-scan:0.1 @sha256:21c7d037df3b430fc5c21b932e2062d0b82b046f39a2dc965aba7dff7a9cfc57
341+ value : quay.io/konflux-ci/tekton-catalog/task-clamav-scan:0.2 @sha256:9cab95ac9e833d77a63c079893258b73b8d5a298d93aaf9bdd6722471bc2f338
342342 - name : kind
343343 value : task
344344 resolver : bundles
@@ -347,6 +347,56 @@ spec:
347347 operator : in
348348 values :
349349 - " false"
350+ - name : sast-shell-check
351+ workspaces :
352+ - name : workspace
353+ workspace : workspace
354+ params :
355+ - name : image-digest
356+ value : $(tasks.build-container.results.IMAGE_DIGEST)
357+ - name : image-url
358+ value : $(tasks.build-container.results.IMAGE_URL)
359+ runAfter :
360+ - build-container
361+ taskRef :
362+ params :
363+ - name : name
364+ value : sast-shell-check
365+ - name : bundle
366+ value : quay.io/konflux-ci/tekton-catalog/task-sast-shell-check:0.1@sha256:8587b9276b11182454b0786c536668d63780552d27ad297a9e8bd04a2af6378e
367+ - name : kind
368+ value : task
369+ resolver : bundles
370+ when :
371+ - input : $(params.skip-checks)
372+ operator : in
373+ values :
374+ - " false"
375+ - name : sast-unicode-check
376+ workspaces :
377+ - name : workspace
378+ workspace : workspace
379+ params :
380+ - name : image-url
381+ value : $(tasks.build-container.results.IMAGE_URL)
382+ - name : image-digest
383+ value : $(tasks.build-container.results.IMAGE_DIGEST)
384+ runAfter :
385+ - build-container
386+ taskRef :
387+ params :
388+ - name : name
389+ value : sast-unicode-check
390+ - name : bundle
391+ value : quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check:0.3@sha256:bec18fa5e82e801c3f267f29bf94535a5024e72476f2b27cca7271d506abb5ad
392+ - name : kind
393+ value : task
394+ resolver : bundles
395+ when :
396+ - input : $(params.skip-checks)
397+ operator : in
398+ values :
399+ - " false"
350400 - name : rpms-signature-scan
351401 params :
352402 - name : image-url
@@ -360,7 +410,7 @@ spec:
360410 - name : name
361411 value : rpms-signature-scan
362412 - name : bundle
363- value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:0c9667fba291af05997397a32e5e938ccaa46e93a2e14bad228e64a6427c5545
413+ value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:1b6c20ab3dbfb0972803d3ebcb2fa72642e59400c77bd66dfd82028bdd09e120
364414 - name : kind
365415 value : task
366416 resolver : bundles
@@ -378,7 +428,7 @@ spec:
378428 - name : workspace
379429 volumeClaimTemplate :
380430 metadata :
381- creationTimestamp : null
431+ creationTimestamp :
382432 spec :
383433 accessModes :
384434 - ReadWriteOnce
0 commit comments