Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

FrogBot: A title for comment is required. When there are too many builds in PR, The comments from xray scan are confusing. #2272

Closed
vinodhini-devops opened this issue Oct 19, 2023 · 3 comments
Labels
feature request New feature or request

Comments

@vinodhini-devops
Copy link

Is your feature request related to a problem? Please describe.
Request 1: I have an azure pipeline with 4 to 5 components building as stages, Im using Frogbot to scan the Pull Requests, The comments are added for each component by the frogbot, The pain point is, the comment just displays the issues, There is no such title like from which build this comment is added. so its hard to find which issue is related which stage/build of the pipeline.

Request 2: When there are no Issues reported on the comment, there is couple lines related to jfrog is dispalyed
"Frogbot also supports Contextual Analysis, Secret Detection, IaC and SAST Vulnerabilities Scanning. This features are included as part of the JFrog Advanced Security package, which isn't enabled on your system."

This message should be avoided on the comment, The stakeholders are not comfortable with these lines displayed on the comment.

Describe the solution you'd like to see
The name of the build can be included in the comment
eg:
The Issues from BUILD A are:
then the xray scan detials

Describe alternatives you've considered
The Comment can be customizable, Like through pipeline we can add a title to the comment, then the xray scan results can be posted.
Additional context

@vinodhini-devops vinodhini-devops added the feature request New feature or request label Oct 19, 2023
@vinodhini-devops
Copy link
Author

Can someone look into this ?

@eyalbe4
Copy link
Contributor

eyalbe4 commented Oct 22, 2023

Thank you, @vinodhini-devops, for providing these requirements!
Could you please submit this feature request on https://github.com/jfrog/frogbot instead of this repository, which is dedicated to the JFrog CLI project?
We're eager to discuss the requirements with you in more detail. Let's close this current issue and carry on the conversation in the new one.

@vinodhini-devops
Copy link
Author

Thank You, @eyalbe4 , I have raised a feature request jfrog/frogbot#550

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature request New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants