4646 - name : name
4747 value : show-sbom
4848 - name : bundle
49- value : quay.io/konflux-ci/tekton-catalog/task-show-sbom:0.1@sha256:04994df487ee886adbe60a8a5866647fbdfd53cc26f7b2554272ba51bf7af29e
49+ value : quay.io/konflux-ci/tekton-catalog/task-show-sbom:0.1@sha256:a7346ed61237db4f82ff782e0c9e8b30536e0e67b907ad600341a6d192e80012
5050 - name : kind
5151 value : task
5252 resolver : bundles
@@ -112,6 +112,14 @@ spec:
112112 default : ' false'
113113 description : Enable cache proxy configuration
114114 type : string
115+ - name : sast-target-dirs
116+ type : string
117+ default : .
118+ description : Target directories to scan with SAST tools. Multiple values should be separated with commas.
119+ - name : enable-package-registry-proxy
120+ default : ' true'
121+ description : Use the package registry proxy when prefetching dependencies
122+ type : string
115123 results :
116124 - description : " "
117125 name : IMAGE_URL
@@ -135,7 +143,7 @@ spec:
135143 - name : name
136144 value : init
137145 - name : bundle
138- value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:288f3106118edc1d0f0c79a89c960abf5841a4dd8bc3f38feb10527253105b19
146+ value : quay.io/konflux-ci/tekton-catalog/task-init:0.4@sha256:5a423246792ac501ea279229b42ee57da9927da441c04b5c9ff86817b0856b08
139147 - name : kind
140148 value : task
141149 resolver : bundles
@@ -156,7 +164,7 @@ spec:
156164 - name : name
157165 value : git-clone-oci-ta
158166 - name : bundle
159- value : quay.io/konflux-ci/tekton-catalog/task-git-clone-oci-ta:0.1@sha256:2c388d28651457db60bb90287e7d8c3680303197196e4476878d98d81e8b6dc9
167+ value : quay.io/konflux-ci/tekton-catalog/task-git-clone-oci-ta:0.1@sha256:13d49df7dc9ae301627e45f95a236011422996152f1bea46cd60217b0f057407
160168 - name : kind
161169 value : task
162170 resolver : bundles
@@ -173,14 +181,16 @@ spec:
173181 value : $(params.output-image).prefetch
174182 - name : ociArtifactExpiresAfter
175183 value : $(params.image-expires-after)
184+ - name : enable-package-registry-proxy
185+ value : $(params.enable-package-registry-proxy)
176186 runAfter :
177187 - clone-repository
178188 taskRef :
179189 params :
180190 - name : name
181191 value : prefetch-dependencies-oci-ta
182192 - name : bundle
183- value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:2229dbc5e15acc0a6d8aec526465aeb0ad54e269c311ac3d0aba88013845e308
193+ value : quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta:0.3@sha256:a2efbcdcecfa5293a622eb356a18f5c88e5714046b214fe8730b43b1a7dbb77d
184194 - name : kind
185195 value : task
186196 resolver : bundles
@@ -229,18 +239,14 @@ spec:
229239 - name : name
230240 value : buildah-oci-ta
231241 - name : bundle
232- value : quay.io/konflux-ci/tekton-catalog/task-buildah-oci-ta:0.9@sha256:cad04a0f4464283714c23940ef6052753821eff7544ec282e2a4707aa264aaf3
242+ value : quay.io/konflux-ci/tekton-catalog/task-buildah-oci-ta:0.9@sha256:681d9f65a7f50cb260ee576ccab551e11d63c549f1e1ef3d201da3c112855bd6
233243 - name : kind
234244 value : task
235245 resolver : bundles
236246 - name : build-image-index
237247 params :
238248 - name : IMAGE
239249 value : $(params.output-image)
240- - name : COMMIT_SHA
241- value : $(tasks.clone-repository.results.commit)
242- - name : IMAGE_EXPIRES_AFTER
243- value : $(params.image-expires-after)
244250 - name : ALWAYS_BUILD_INDEX
245251 value : $(params.build-image-index)
246252 - name : IMAGES
@@ -255,7 +261,7 @@ spec:
255261 - name : name
256262 value : build-image-index
257263 - name : bundle
258- value : quay.io/konflux-ci/tekton-catalog/task-build-image-index:0.2 @sha256:3fa26d2c0768329c2df93c646bf5855245b74db7196ad55f83756ce22cd7f0f1
264+ value : quay.io/konflux-ci/tekton-catalog/task-build-image-index:0.3 @sha256:550afde50349e22ec11191ea0db9a49395ab46fef4e8317d820b6e946677ebeb
259265 - name : kind
260266 value : task
261267 resolver : bundles
@@ -276,7 +282,7 @@ spec:
276282 - name : name
277283 value : source-build-oci-ta
278284 - name : bundle
279- value : quay.io/konflux-ci/tekton-catalog/task-source-build-oci-ta:0.3@sha256:362f0475df00e7dfb5f15dea0481d1b68b287f60411718d70a23da3c059a5613
285+ value : quay.io/konflux-ci/tekton-catalog/task-source-build-oci-ta:0.3@sha256:0917cfc7772e82cb8e74743c2104f43bcf2596aceafe87eec6fce69a8cac5f06
280286 - name : kind
281287 value : task
282288 resolver : bundles
@@ -298,7 +304,7 @@ spec:
298304 - name : name
299305 value : deprecated-image-check
300306 - name : bundle
301- value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:5ff16b7e6b4a8aa1adb352e74b9f831f77ff97bafd1b89ddb0038d63335f1a67
307+ value : quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check:0.5@sha256:e78d0d3baf3c8cfc1a5ad278196b74032d9568b143a87c7a79ab780fedfb296e
302308 - name : kind
303309 value : task
304310 resolver : bundles
@@ -320,7 +326,7 @@ spec:
320326 - name : name
321327 value : clair-scan
322328 - name : bundle
323- value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:3fa03be0280f33d7070ea53f26d53e727199737a7a2b9a59a95071ae40a999ac
329+ value : quay.io/konflux-ci/tekton-catalog/task-clair-scan:0.3@sha256:8fad4c2e2f470f82ee43d6b2ac72327b4d9c6e9cb514a678911c1c9359c29894
324330 - name : kind
325331 value : task
326332 resolver : bundles
@@ -340,7 +346,7 @@ spec:
340346 - name : name
341347 value : ecosystem-cert-preflight-checks
342348 - name : bundle
343- value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:b4ac586edea81dcd25dfc17f1bd57899825be2b443e48d572cd05ce058f153bb
349+ value : quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks:0.2@sha256:e2bcf1174a6dae9969b8f12e94babe2a5881bc77a509f10823b6a9eac6392850
344350 - name : kind
345351 value : task
346352 resolver : bundles
@@ -359,14 +365,16 @@ spec:
359365 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
360366 - name : CACHI2_ARTIFACT
361367 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
368+ - name : TARGET_DIRS
369+ value : $(params.sast-target-dirs)
362370 runAfter :
363371 - build-image-index
364372 taskRef :
365373 params :
366374 - name : name
367375 value : sast-snyk-check-oci-ta
368376 - name : bundle
369- value : quay.io/konflux-ci/tekton-catalog/task-sast-snyk-check-oci-ta:0.4@sha256:ba3eff8f97a7cfc5341f3138c8a13e532238298d9a0fb94401c0971d30eb115a
377+ value : quay.io/konflux-ci/tekton-catalog/task-sast-snyk-check-oci-ta:0.4@sha256:8f3ecbeaff579e41b8278f82d7fabac27845db17a8e687ea6c510c0c9aceabbb
370378 - name : kind
371379 value : task
372380 resolver : bundles
@@ -388,7 +396,7 @@ spec:
388396 - name : name
389397 value : clamav-scan
390398 - name : bundle
391- value : quay.io/konflux-ci/tekton-catalog/task-clamav-scan:0.3@sha256:9f18b216ce71a66909e7cb17d9b34526c02d73cf12884ba32d1f10614f7b9f5a
399+ value : quay.io/konflux-ci/tekton-catalog/task-clamav-scan:0.3@sha256:567cb66bd2e1f4b58b9d4d756f3317fc62479e0b40aa0de66094b1f12d296cfc
392400 - name : kind
393401 value : task
394402 resolver : bundles
@@ -426,14 +434,16 @@ spec:
426434 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
427435 - name : CACHI2_ARTIFACT
428436 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
437+ - name : TARGET_DIRS
438+ value : $(params.sast-target-dirs)
429439 runAfter :
430440 - coverity-availability-check
431441 taskRef :
432442 params :
433443 - name : name
434444 value : sast-coverity-check-oci-ta
435445 - name : bundle
436- value : quay.io/konflux-ci/tekton-catalog/task-sast-coverity-check-oci-ta:0.3@sha256:47f4e2d0881ac8c43a1ea1e2375bb2591dff34b5aa8c7366a043652d1eed499c
446+ value : quay.io/konflux-ci/tekton-catalog/task-sast-coverity-check-oci-ta:0.3@sha256:e92d00ed858233d0096627861192d3e4fc013cf1559c0d0b0ea0657d3377ce75
437447 - name : kind
438448 value : task
439449 resolver : bundles
@@ -454,7 +464,7 @@ spec:
454464 - name : name
455465 value : coverity-availability-check
456466 - name : bundle
457- value : quay.io/konflux-ci/tekton-catalog/task-coverity-availability-check:0.2@sha256:de35caf2f090e3275cfd1019ea50d9662422e904fb4aebd6ea29fb53a1ad57f5
467+ value : quay.io/konflux-ci/tekton-catalog/task-coverity-availability-check:0.2@sha256:8b501440a960aec446db2ebc6625a49d0317a9fc7bf0f7bd9b18cb63052db7de
458468 - name : kind
459469 value : task
460470 resolver : bundles
@@ -473,14 +483,16 @@ spec:
473483 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
474484 - name : CACHI2_ARTIFACT
475485 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
486+ - name : TARGET_DIRS
487+ value : $(params.sast-target-dirs)
476488 runAfter :
477489 - build-image-index
478490 taskRef :
479491 params :
480492 - name : name
481493 value : sast-shell-check-oci-ta
482494 - name : bundle
483- value : quay.io/konflux-ci/tekton-catalog/task-sast-shell-check-oci-ta:0.1@sha256:c89a2bcf408ede50b161005859c76868f8007bb2a5daa06c1effe979b02145d7
495+ value : quay.io/konflux-ci/tekton-catalog/task-sast-shell-check-oci-ta:0.1@sha256:c4ef47e3b4e0508572d266fb745be7e374c29dc02580328cbe9f4d472a8aca57
484496 - name : kind
485497 value : task
486498 resolver : bundles
@@ -499,14 +511,16 @@ spec:
499511 value : $(tasks.prefetch-dependencies.results.SOURCE_ARTIFACT)
500512 - name : CACHI2_ARTIFACT
501513 value : $(tasks.prefetch-dependencies.results.CACHI2_ARTIFACT)
514+ - name : TARGET_DIRS
515+ value : $(params.sast-target-dirs)
502516 runAfter :
503517 - build-image-index
504518 taskRef :
505519 params :
506520 - name : name
507521 value : sast-unicode-check-oci-ta
508522 - name : bundle
509- value : quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check-oci-ta:0.4@sha256:92552dddd259cd4cc2ac9a19a02e6649cadfdbb8cd66b61b8c9748d94f2166a5
523+ value : quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check-oci-ta:0.4@sha256:90efa582de7770d55102b74014a765cd16a25a56f2cf644b56a788c70c4dc749
510524 - name : kind
511525 value : task
512526 resolver : bundles
@@ -528,7 +542,7 @@ spec:
528542 - name : name
529543 value : apply-tags
530544 - name : bundle
531- value : quay.io/konflux-ci/tekton-catalog/task-apply-tags:0.3@sha256:aa62b41861c09e2e59c69cc6e9a1f740bf0c81e6a1eb03f57f59dfda0f65840e
545+ value : quay.io/konflux-ci/tekton-catalog/task-apply-tags:0.3@sha256:a291081de7fb27f832c6fc3c4b078acf7e6162ca4c085db38b118ca87e8b5b66
532546 - name : kind
533547 value : task
534548 resolver : bundles
@@ -551,7 +565,7 @@ spec:
551565 - name : name
552566 value : push-dockerfile-oci-ta
553567 - name : bundle
554- value : quay.io/konflux-ci/tekton-catalog/task-push-dockerfile-oci-ta:0.3@sha256:1bc2d0f26b89259db090a47bb38217c82c05e335d626653d184adf1d196ca131
568+ value : quay.io/konflux-ci/tekton-catalog/task-push-dockerfile-oci-ta:0.3@sha256:7855471abfe87de080b914f2f3ca27c59e64f6448a7c2435e51435b764494c71
555569 - name : kind
556570 value : task
557571 resolver : bundles
@@ -568,7 +582,7 @@ spec:
568582 - name : name
569583 value : rpms-signature-scan
570584 - name : bundle
571- value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:0eb4cfb41181a158b6761c990cc7a9f7f77c70f7ff19bf276009c6ef59c9da5e
585+ value : quay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan:0.2@sha256:cfdb76c67f27bc498132431f5a24fbc17dac1981d6f6e3da5cf5964ac5abdd20
572586 - name : kind
573587 value : task
574588 resolver : bundles
0 commit comments