Comments (5)
KICS works on a variety of known formats and they queries are based on that syntax.
See https://docs.kics.io/latest/architecture/
If you have your own format you can extend KICS for that as well and have custom queries for it.
Take a look at the parsers kics has at pkg/parser directory for examples.
from kics.
And this is for creating queries on the format KICS already have: https://docs.kics.io/latest/creating-queries/
If you have a specific query question - fill free to reopen this issue.
from kics.
Thanks for your reply.
Can you point me please to the part of code where it checks if an input file is an openAPI definition ?
from kics.
Also is there any type of "platform" I can use for a generic json file ? They have no specific format or attributes, they are just valid JSON files.
from kics.
Hello again @kaplanlior , apparently I can't re open this issue.
Could you please provide me with your thoughts regarding my last question ?
Thanks
from kics.
Related Issues (20)
- bug(terraform): scan results differ between .tf and respective .tfplan file
- feat(Accuracy Benchmark): update the KICS Accuracy Benchmark results for v2.x HOT 1
- bug(assets/queries/terraform/azure/ssh_is_exposed_to_the_internet/metadata.json): Grammar of Title and Description could be more specific. HOT 2
- bug(contributionguide): removal of deprecated golint HOT 1
- bug(docs): download of queries not providing all details HOT 8
- bug(chown): chown flag is checked for non-executable files
- bug(helm): rendering errors on valid charts HOT 1
- bug(terraform): cloudwatch log without kms key with plan file
- bug(terraform): merge with object changes input for kics HOT 1
- bug(cloudformation): false positive for "ECS Cluster Not Encrypted At Rest" when using task definition ref HOT 1
- bug(query): security groups not used query with false positive if security group added in a list HOT 1
- bug(terraform): a deadlock in filesystem.go since v1.7.13 HOT 1
- bug(scan): gitignore applied to absolute path leading to wrong exclusion HOT 1
- query(kubernetes): containers_run_with_low_uid >= 1000 instead of 10000
- bug(docker): pip_install_keeping_cached_packages misses `--no-cache`
- bug(terraform): param enable_https_traffic_only now renamed to https_traffic_only_enabled HOT 1
- feat(cli): add setting to suppress ASCII logo in CLI output
- query(terraform): wanting to exclude Keyvault References
- bug(terraform): false positive of "CloudWatch Without Retention Period Specified" HOT 1
- bug(docker): oom when scanning a dockerfile with multi-line commands and comments HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from kics.