Skip to content

Conversation

@msandeep12
Copy link

@msandeep12 msandeep12 commented Jul 20, 2025

#134

This PR introduces a new fail_on_threshold input for the KICS GitHub Action, allowing users to specify severity thresholds using natural operators (e.g., high>1,low>5). When set, fail_on_threshold takes precedence over fail_on and ignore_on_exit, and the workflow will only fail if a threshold is exceeded. This makes it easier to control workflow failures based on the number of issues found for each severity, providing more flexible and intuitive scan result handling. Documentation has been updated to reflect this behavior.
This can act as quality gate condition which each repo owners can set

Testing
Failure scenario
https://github.com/msandeep12/terraform-examples/actions/runs/16397596206

Success scenario
https://github.com/msandeep12/terraform-examples/actions/runs/16397524250

@msandeep12 msandeep12 requested a review from a team as a code owner July 20, 2025 08:22
@amacedoo
Copy link

Logo
Checkmarx One – Scan Summary & Details28424d7e-f025-497f-9fec-9ec5d6617778

Great job, no security vulnerabilities found in this Pull Request

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants