From 2df4b42da217723feed05da8eafffe1bdcc674d0 Mon Sep 17 00:00:00 2001 From: Ryan Ahearn Date: Fri, 19 Aug 2022 12:23:05 -0400 Subject: [PATCH] Use api-scan owasp action --- .github/workflows/checks.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/checks.yml b/.github/workflows/checks.yml index 442067cd9..b59c57dd5 100644 --- a/.github/workflows/checks.yml +++ b/.github/workflows/checks.yml @@ -114,10 +114,11 @@ jobs: env: SQLALCHEMY_DATABASE_TEST_URI: postgresql://user:password@localhost:5432/test_notification_api - name: Run OWASP Baseline Scan - uses: zaproxy/action-baseline@v0.6.1 + uses: zaproxy/action-api-scan@v0.1.1 with: docker_name: 'owasp/zap2docker-weekly' target: 'http://localhost:6011/' fail_action: true + allow_issue_writing: false rules_file_name: 'zap.conf' cmd_options: '-I'