From 36dd7c8f10463a291f0681690b4d420cb9d4a4f2 Mon Sep 17 00:00:00 2001 From: DMarinhoCodacy Date: Wed, 8 Apr 2026 12:17:44 +0100 Subject: [PATCH 1/3] Fix nginx rules severity and bump opengrep 1.18.0 --- .tool_version | 2 +- docs/codacy-rules.yaml | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.tool_version b/.tool_version index 73d7467..7440683 100644 --- a/.tool_version +++ b/.tool_version @@ -1 +1 @@ -1.17.0 \ No newline at end of file +1.18.0 \ No newline at end of file diff --git a/docs/codacy-rules.yaml b/docs/codacy-rules.yaml index e0d3bdd..be3b5d3 100644 --- a/docs/codacy-rules.yaml +++ b/docs/codacy-rules.yaml @@ -531,7 +531,7 @@ rules: - id: codacy.k8s.ingress.nginx.retirement.ingress-resource languages: - yaml - severity: WARNING + severity: ERROR message: > This Ingress is configured to use the Ingress NGINX controller (kubernetes.io/ingress.class: nginx or ingressClassName: nginx). @@ -572,7 +572,7 @@ rules: - id: codacy.k8s.ingress.nginx.retirement.ingress-class languages: - yaml - severity: WARNING + severity: ERROR message: > This IngressClass is wired to the Ingress NGINX controller (spec.controller: k8s.io/ingress-nginx). @@ -598,7 +598,7 @@ rules: - id: codacy.k8s.ingress.nginx.retirement.workload languages: - yaml - severity: WARNING + severity: ERROR message: > This Kubernetes resource is labelled as part of the Ingress NGINX controller stack (app.kubernetes.io/name: ingress-nginx). From 9950bdc511bfea36fbdeeb38fa41f487460c3aec Mon Sep 17 00:00:00 2001 From: DMarinhoCodacy Date: Wed, 8 Apr 2026 12:48:27 +0100 Subject: [PATCH 2/3] fix nginx tests --- docs/multiple-tests/codacy-rules/results.xml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/docs/multiple-tests/codacy-rules/results.xml b/docs/multiple-tests/codacy-rules/results.xml index 0fd62a2..924a099 100644 --- a/docs/multiple-tests/codacy-rules/results.xml +++ b/docs/multiple-tests/codacy-rules/results.xml @@ -48,10 +48,10 @@ - - - - + + + + From 336b1c7c32f64a66e0d6daa0c7b984ad79a04c34 Mon Sep 17 00:00:00 2001 From: DMarinhoCodacy Date: Wed, 8 Apr 2026 14:33:25 +0100 Subject: [PATCH 3/3] fix impact of each nginx rule --- docs/codacy-rules.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/docs/codacy-rules.yaml b/docs/codacy-rules.yaml index be3b5d3..3444c9e 100644 --- a/docs/codacy-rules.yaml +++ b/docs/codacy-rules.yaml @@ -564,7 +564,7 @@ rules: description: > Detects Ingress resources configured to use the Ingress NGINX controller. Ingress NGINX is scheduled for retirement (no fixes after March 2026). - impact: MEDIUM + impact: HIGH confidence: HIGH references: - https://kubernetes.io/blog/2025/11/11/ingress-nginx-retirement/ @@ -591,7 +591,7 @@ rules: description: > Detects IngressClass objects wired to the Ingress NGINX controller. Ingress NGINX is scheduled for retirement (no fixes after March 2026). - impact: MEDIUM + impact: HIGH confidence: HIGH references: - https://kubernetes.io/blog/2025/11/11/ingress-nginx-retirement/ @@ -620,7 +620,7 @@ rules: description: > Detects Kubernetes resources labelled as part of the Ingress NGINX controller stack. Ingress NGINX is scheduled for retirement (no fixes after March 2026). - impact: MEDIUM + impact: HIGH confidence: HIGH references: - https://kubernetes.io/blog/2025/11/11/ingress-nginx-retirement/