implementing first steps

This commit is contained in:
Elizabeth W
2026-04-19 22:29:13 -06:00
parent 8c2c420bff
commit df10609df5
6 changed files with 303 additions and 0 deletions
+33
View File
@@ -0,0 +1,33 @@
{{- if .Values.pipeline.enabled }}
apiVersion: argoproj.io/v1alpha1
kind: ClusterWorkflowTemplate
metadata:
name: amp-security-pipeline-v1.0.0
spec:
templates:
- name: scan-socketdev
metadata:
annotations:
secrets.infisical.com/auto-reload: "true"
initContainers:
- name: wait-for-infisical
image: alpine:3.20
command:
- sh
- -c
args:
- until [ -n "${SOCKETDEV_TOKEN:-}" ]; do sleep 2; done
container:
image: socketdev/socketcli:latest
command:
- sh
- -c
args:
- |
set -eu
mkdir -p /workspace/reports
socketdev scan /workspace --format json --output /workspace/reports/socketdev.json || true
volumeMounts:
- name: workspace
mountPath: /workspace
{{- end }}