Skip to content

Conversation

@cosmir17
Copy link
Contributor

@cosmir17 cosmir17 commented Sep 25, 2025

Purpose

Testing the SCS fix from PM-19431 to verify that Supply Chain Security scanning works correctly for fork PRs using GITHUB_TOKEN.

What this tests

Expected behavior

The CI should show:

  • ✅ Checkmarx scan runs via pull_request_target
  • ✅ "SCS/Scorecard: Enabled" in the logs
  • ✅ SCS parameters included in scan command
  • ✅ No permission errors for SCS token

Action required

  • Please DO NOT merge this PR
  • Will close once SCS functionality is verified
  • Check the Checkmarx scan logs for SCS results

Related to: PM-19431
Testing: Commit 3afeaae from PR #25

@cosmir17 cosmir17 self-assigned this Sep 25, 2025
@cosmir17 cosmir17 requested a review from a team as a code owner September 25, 2025 18:03
Move test warning below main heading to comply with MD041 rule
Use blockquote for test warning to comply with markdown best practices
@cosmir17
Copy link
Contributor Author

Test completed successfully! ✅

The fork-friendly Checkmarx action with SCS/Scorecard support has been:

This test PR served its purpose and can now be closed.

Screenshot 2025-09-25 at 21 42 16

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant