Skip to content

feat: add SonarCloud implementation #58

feat: add SonarCloud implementation

feat: add SonarCloud implementation #58

name: DevSecOps Pipeline
on:
push:
branches:
- main
pull_request:
branches:
- main
jobs:
security-checks:
runs-on: ubuntu-latest
steps:
- name: Checkout Code
uses: actions/checkout@v4
- name: Set up Python
uses: actions/setup-python@v5
with:
python-version: '3.x'
- name: Install Dependencies
run: |
python -m pip install --upgrade pip
pip install bandit safety truffleHog pylint
- name: Run DevSecOps Pipeline
run: python devsecops_pipeline.py