diff --git a/lakedrops.yml b/lakedrops.yml index 2f52df381b2af3e54e04d0f757c7806f4630329f..457caec452be27f7946f5729d58193be6cdb178c 100644 --- a/lakedrops.yml +++ b/lakedrops.yml @@ -14,6 +14,7 @@ variables: DISABLE_GITLAB_CI_TEST_SAST_NODEJS_SCAN: 1 DISABLE_GITLAB_CI_TEST_SAST_PHPCS_SECURITY_AUDIT: 1 DISABLE_GITLAB_CI_TEST_SAST_SEMGREP: 1 + DISABLE_GITLAB_CI_TEST_SAST_SPOTBUGS: 1 DISABLE_GITLAB_CI_TEST_SECRET_DETECTION: 1 ENVIRONMENT_NAME: ${PROJECT_NAME}/$CI_COMMIT_REF_NAME ENVIRONMENT_URL: https://www.example.com/$SITE_NAME diff --git a/tests/gitlab.yml b/tests/gitlab.yml index 3b2c18c664eaf0d966cedd08318f3dc695e94d29..e241b04ed94ac52796c8482561652eee3f2ecea0 100644 --- a/tests/gitlab.yml +++ b/tests/gitlab.yml @@ -96,6 +96,16 @@ semgrep-sast: rules: - if: '$DISABLE_GITLAB_CI_TEST_SAST_SEMGREP != "1"' +spotbugs-sast: + <<: *test_gitlab_default + artifacts: + name: spotbugs-sast + paths: ['gl-sast-report.json'] + reports: + sast: gl-sast-report.json + rules: + - if: '$DISABLE_GITLAB_CI_TEST_SAST_SPOTBUGS != "1"' + # ==================================== Secret Detection secret_detection: <<: *test_gitlab_default