veracode / veracode-uploadandscan-action

This action uploads and scans code to Veracode for a static policy (or sandbox) scan.
MIT License
30 stars 29 forks source link

convert action into bash action #9

Closed fnxpt closed 1 year ago

fnxpt commented 3 years ago

Current implementation uses docker action, this forces the action to run on linux machines. With this approach this action can run on windows/macos and linux

Macadoshis commented 2 years ago

Hello ? Anybody working on this repo anymore ? This feature is a must-have, really interesting.

I had to fork your repo just to change the base image because my GH enterprise has restrictions policies with openjdk:latest. The removal of docker in favour of a straight-forward jar process run from the host is a massive simplification and security improvement.

fnxpt commented 1 year ago

Closing this since its almost 2 years without any feedback