Are you in the loop? Keep up with the latest by making sure you're subscribed to Community Announcements. Just click Watch and select Articles.

×
Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in
Celebration

Earn badges and make progress

You're on your way to the next level! Join the Kudos program to earn points and save your progress.

Deleted user Avatar
Deleted user

Level 1: Seed

25 / 150 points

Next: Root

Avatar

1 badge earned

Collect

Participate in fun challenges

Challenges come and go, but your rewards stay with you. Do more to earn more!

Challenges
Coins

Gift kudos to your peers

What goes around comes around! Share the love by gifting kudos to your peers.

Recognition
Ribbon

Rise up in the ranks

Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!

Leaderboard

How can I integrate OWASP ZAP in the Bitbucket Pipelines?

Edited

I am fairly new to these issues and was wondering if it is possible to integrate OWASP ZAP with my bitbucket pipelines and break the build if any issue appear.

Can someone send me an example of a template? Or something I can study or read to understand more about pipelines.

My OWASP ZAP instance is installed on an ubuntu server.

 

I'm trying to build a open-source CI/CD (OWASP Dependency Check, Horusec, OWASP ZAP) and if anyone has any open-source SCA/SAST/DAST ideas, feel free to suggest them.

2 answers

1 accepted

0 votes
Answer accepted
Oleksandr Kyrdan
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
Jul 15, 2022

Hi @Gabriel Moraes Pacheco de Oliveira 

Thank your for your question!

For the integration Bitbucket Pipelines provides Bitbucket Pipes. So you could build powerful, automated continuous integration and continuous deployment workflows in a plug and play fashion.

12 days of CI/CD blog posts series explain and provide details how to use and how to create your custom integration with Bitbucket Pipes.

Feel free to share your idea with our community to help you.

Best regards,
Oleksandr Kyrdan

@Gabriel Moraes Pacheco de Oliveira  did you find any solution to integrate OWASP ZAP with bitbucket pipelines ? without having to create your own pipe?

@Gabriel Moraes Pacheco de Oliveira  @ABhaskar  @Oleksandr Kyrdan - Did anyone of you able to integrate and run the scan succesfully with OWASP zap. 

For me post scan the pipeline is running endless and ending with timeout.

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
TAGS
AUG Leaders

Atlassian Community Events