syedsimran/Trigger Playbook Scan

Continuous, automated, comprehensive API Security Testing

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
apisec-hostnameHostName of APIsecyes""
apisec-usernameThe APIsec username with which the scans will be executedyes""
apisec-passwordThe Password of the APIsec user with which the scans will be executedyes""
apisec-projectThe Name of the project for security scanyes""
apisec-profileThe Name of the scan profile to be executednoMaster
apisec-regionThe location/scanner name where the scan will be executed inno""
sarif-result-fileThe path to the sarif format result fileno""
apisec-email-reportTo trigger scan email reports, set this value as "true" or else "false"no""
apisec-report-TypeType of Report to be send with trigger scan email, with possible valuess as these "RUN_SUMMARY", "RUN_DETAIL", "PROJECT_SUMMARY", "PROJECT_DETAIL", "PROJECT_PEN_TEST_REPORT", "DEVELOPER_REPORT", "COMPLIANCE"no""
apisec-fail-on-vuln-severityPass the vulnerable seveity string to break pipeline execution with allowed values are Critical, High and Medium severity.no""
apisec-refresh-playbooksTo regenerate/refresh the playbooks of a project, set this value as "true" or else "false"no""
apisec-openapi-spec-urlOpenAPI Spec Url for registering a project like "http://netbanking.apisec.ai:8080/v2/api-docs"no""
apisec-openapi-spec-filePath where OpenAPI Spec File is avaiable like "netbanking.json" if spec file available at present working directoryno""
apisec-internal-openapi-spec-urlOpenAPI Spec Url for registering a project like "http://netbanking.apisec.ai:8080/v2/api-docs" for special use-case like Github Actionsno""
apisec-spec-typeTo be used while using "apisec-internal-openapi-spec-url parameter for type of spec like "json" for json-content specs and "yaml" for yaml-content specsno""
apisec-profile-scannerName of the scanner like "US_EAST_1" with which profile like "Master" needs to be configuredno""
apisec-env-nameEnvironment Name like "Master" of an existing projectno""
apisec-auth-nameAuth Name like "Default" of existing environment of an existing projectno""
apisec-app-usernameUsername of the OpenAPISpec applicationno""
apisec-app-passwordPassword of the OpenAPISpec applicationno""
apisec-app-endpoint-urlToken endpoint url of the OpenAPISpec application like https://netbanking.apisec.ai:8080/loginno""
apisec-app-token_paramToken param of the OpenAPISpec application like ".info.token" or ".token"no""
apisec-tierType of categories on scans needs to be triggered with possibles values "tier0", "tier1", "tier2", "tier3",no""
apisec-categoryTo scan one specific category like "Unsecured", "ABAC_Level1"., etcno""

no outputs