| 文件 | 最后提交记录 | 最后更新时间 |
|---|---|---|
docs(general): Switch references to Bridgecrew with Prisma Cloud (#5704) * Change references * Revert code changes * One more revert * revert * banner update * Update ext_argument_parser.py | 2 年前 | |
fix(general): add domain allowlist validation for Prisma Cloud and Bridgecrew API URLs (#7496) * validation + tests * tests * mypy * comments * comments * dev --------- Co-authored-by: May Blonder <mblonder@paloaltonetworks.com> | 5 个月前 | |
feat(general): verify ECDSA-P256 signatures on external custom checks before loading (#7556) * adding signiture verification when using external modules * edge cases * inline signing * mr comments * few fixes * fewer comments * native python * rename * more tests * m1 * mr comments * more tests * nits * less comments * more nots * comments * dup code remove * less duplication * lint * fixing sys.path leak * test sys * testst * lock * retrigger CI * temp commit - testing the tests * Revert "temp commit - testing the tests" This reverts commit ee756e46834430d42445445131d050679e9158b0. * ci: pin external_checks/verification suite to one xdist worker Switches the project-wide pytest config from --dist loadfile to --dist loadgroup (a strict superset — file-level pinning for un-marked tests is preserved) and adds a pytest_collection_modifyitems hook to tests/common/external_checks/verification/conftest.py that attaches xdist_group(external_checks_verification) to every test in the package. The unit-tests(3.9) GitHub Actions job intermittently crashed with Fatal Python error: Segmentation fault inside posixpath.realpath called from pytest's tmp_path fixture, on the *other* xdist worker — not in any test from this branch. Reproduction attempts on Python 3.12 locally (3914 tests, same config) show no segfault, indicating a Python-3.9- and ubuntu-runner-specific race (most likely between a C-extension worker thread in a transitive dep like pycares and our tmp_path-heavy tests running on the other xdist worker). Pinning this package's 150 tests onto a single xdist worker via xdist_group serialises them through the GIL with whatever else lands on that worker, closing the cross-process race window. Verified locally: - 151/0 single-worker pinning under the new config (was 74/77 split) - 629 non-verification tests still distribute across both workers identically (212/417 split, same as under loadfile) - All 150 verification tests still pass in 3.49s * revert * test(conftest): disable pycares to fix Python 3.9 segfault * ci: add -v to unit-tests for segfault diagnosis (temporary) * ci(diagnostic): replace -v with per-worker file logger for segfault triage * build * debug tests * debug tests * test * fix(test): avoid sys.meta_path == before deadlock in test_finder_is_removed_from_sys_meta_path_after_uninstall * fix(test): avoid sys.meta_path == before deadlock + strip diagnostic infra * fix(verification): defense-in-depth for Python 3.9 unit-tests hang * adam comments * test tests * deps: add pytest-forked for Python 3.9 verification test isolation * tests * tests * chore(test): strip Python 3.9 segfault diagnostic infrastructure * remove debug * remove debug * chore(verification): annotate intentional exec for bandit * ci * deps: pin aiohttp <3.14.0 to unblock Python 3.13 unit tests * deps: sync setup.py aiohttp upper bound with Pipfile (<3.14.0) --------- Co-authored-by: mblonder <mblonder@paloaltonetworks.com> | 3 个月前 | |
feat(general): upgrade checkvo python version (#7303) * upgrade checkvo python to 3.10 * upgrade checkvo python to 3.10 * upgrade checkvo python to 3.10 * upgrade asteval to 1.0.6 * upgrade checkvo python to 3.10 * python 3.9 * . * fix mypy * . * update pipfile.lock * . * Fix TypeError in local_graph.py by converting string indices to int for vertices * Fix TypeError in local_graph.py by converting string indices to int for vertices * add pytest-benchmark * lock versions * lock versions * lock versions * lock versions * terraform-aws-components Linux * . * fix tesat and lint * fix tesat and lint * fix tesat and lint * fix lint * urllib3 = "<2.5.0" --------- Co-authored-by: lshindelman <lshindelman@paloaltonetworks.com> | 11 个月前 | |
Merge 712e7e715ee842aa9ffb53ea6d2e43c8966c7181 into f682444297a1661ec515f29ce71e7afadb1b7618 | 10 天前 | |
docs(general): Remove Python 3.7 (#6200) * Remove Python 3.7 * Update command * Add typing * Update gitpod * ignore flake8 B909- loop-iterator-mutation * Note 3.8 EOL --------- Co-authored-by: lirshindalman <lirshindelman@gmail.com> | 2 年前 | |
fix(sca): Kustomize and Helm improvements (#7568) initial impl | 3 个月前 | |
fix(general): Update the SARIF schema URL (#6304) feat(general): update the SARIF schema URL. Linked to https://github.com/oasis-tcs/sarif-spec/pull/599 Co-authored-by: HAUTIN Mikaël <mikael.hautin@forvia.com> | 1 年前 | |
docs(general): Switch references to Bridgecrew with Prisma Cloud (#5704) * Change references * Revert code changes * One more revert * revert * banner update * Update ext_argument_parser.py | 2 年前 | |
fix docs | 5 年前 | |
Update CNAME | 6 年前 | |
UML and sequence diagram | 6 年前 | |
UML and sequence diagram | 6 年前 | |
update checkov homepage | 5 年前 | |
update checkov homepage | 5 年前 | |
Update docs website (#65) Update docs website | 6 年前 | |
Add files via upload | 6 年前 | |
Link fixes and page ordering for new docs (#1041) * config and gemfile for local rendering of docs * Fix page ordering Co-authored-by: barak <schosterbarak@gmail.com> | 5 年前 | |
Add details to reports (#3273) * add trace functionality to CLI report * fix other reports to includes 'traces' * fix tab * change casing * only add 'Traces' to csv output if present, for compat * revert pipfiles * use 'attachments' for traces, closest match on serif spec' * rename 'traces' to 'details' * Apply suggestions from code review Co-authored-by: Anton Grübel <anton.gruebel@gmail.com> * remove 'add_trace' method from BaseCheck * assert resource is a record * update documentation * add CLI report screenshot to documentation Co-authored-by: Anton Grübel <anton.gruebel@gmail.com> | 4 年前 | |
updated screenshot | 6 年前 | |
Update docs website (#65) Update docs website | 6 年前 | |
update checkov homepage | 5 年前 | |
docs(general): Switch references to Bridgecrew with Prisma Cloud (#5704) * Change references * Revert code changes * One more revert * revert * banner update * Update ext_argument_parser.py | 2 年前 | |
first draft runner contribution guide (#2765) | 4 年前 | |
Documentation tf module scanning (#512) * DOCS - Add info for scanning 3rd party TF modules with Checkov * DOCS - Add info for scanning 3rd party TF modules with Checkov | 5 年前 | |
add search_data.json | 6 年前 |
| 文件 | 最后提交记录 | 最后更新时间 |
|---|---|---|
| 2 年前 | ||
| 5 个月前 | ||
| 3 个月前 | ||
| 11 个月前 | ||
| 10 天前 | ||
| 2 年前 | ||
| 3 个月前 | ||
| 1 年前 | ||
| 2 年前 | ||
| 5 年前 | ||
| 6 年前 | ||
| 6 年前 | ||
| 6 年前 | ||
| 5 年前 | ||
| 5 年前 | ||
| 6 年前 | ||
| 6 年前 | ||
| 5 年前 | ||
| 4 年前 | ||
| 6 年前 | ||
| 6 年前 | ||
| 5 年前 | ||
| 2 年前 | ||
| 4 年前 | ||
| 5 年前 | ||
| 6 年前 |