Skip to content

[WIP] Add reusable Fortify on Demand SAST analysis workflow#3

Draft
Copilot wants to merge 1 commit intomainfrom
copilot/add-reusable-fortify-workflow
Draft

[WIP] Add reusable Fortify on Demand SAST analysis workflow#3
Copilot wants to merge 1 commit intomainfrom
copilot/add-reusable-fortify-workflow

Conversation

Copy link
Contributor

Copilot AI commented Nov 6, 2025

Thanks for asking me to work on this. I will get started on it and keep this PR's description up to date as I form a plan and make progress.

Original prompt

Create a reusable Fortify on Demand SAST analysis workflow based on the attached fortify-analysis.yml, for use by parser plugin repositories. The workflow should:

  • Be added to the fortify/.github repository under .github/workflows/fortify-analysis.yml
  • Use a workflow_call trigger for consumption by other repositories
  • Include all relevant job(s) and environment configuration as in the original, except for repository-specific logic
  • Reference secrets as inherited from the caller repo
  • Reference and update documentation/comments appropriately for use as a reusable workflow

This pull request was created as a result of the following prompt from Copilot chat.

Create a reusable Fortify on Demand SAST analysis workflow based on the attached fortify-analysis.yml, for use by parser plugin repositories. The workflow should:

  • Be added to the fortify/.github repository under .github/workflows/fortify-analysis.yml
  • Use a workflow_call trigger for consumption by other repositories
  • Include all relevant job(s) and environment configuration as in the original, except for repository-specific logic
  • Reference secrets as inherited from the caller repo
  • Reference and update documentation/comments appropriately for use as a reusable workflow

✨ Let Copilot coding agent set things up for you — coding agent works faster and does higher quality work when set up for your repo.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants