Let us know if you're using Salus
As we develop Salus, it's useful to know how it's being used. If you would like, please comment below about where you use it, how and for what purpose.
My team is experimenting with Salus to scan several code bases, so far it's very promising.
A small improvement we've made is simplifying for CircleCI through an orb. This allows teams to integrate Salus and any configuration, simply by including the orb. The orb would have the correct docker image/version, and remote configuration locations managed by the security team. One benefit of this is that we no longer require updating several pipelines for updates that aren't in the container itself, such as handling of reporting, since these are reused from the orb.
Does something like this sound like a valuable contribution?
Actually moved my response to #39 to keep this thread clean. Happy to hear that Salus is useful so far.