Skip to content
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
14 changes: 7 additions & 7 deletions .github/workflows/quality-checks.yml
Original file line number Diff line number Diff line change
Expand Up @@ -204,7 +204,7 @@ jobs:
cd src
go mod vendor
- name: Check licenses
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "fs"
scan-ref: "."
Expand Down Expand Up @@ -247,7 +247,7 @@ jobs:
- name: Run unit tests
run: make test
- name: Generate SBOM
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "fs"
scan-ref: "."
Expand All @@ -264,7 +264,7 @@ jobs:

- name: Check python vulnerabilities
if: ${{ always() && steps.check_languages.outputs.uses_poetry == 'true'}}
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "fs"
skip-files: "**/package-lock.json,**/go.mod,**/pom.xml"
Expand All @@ -277,7 +277,7 @@ jobs:
trivy-config: trivy.yaml
- name: Check node vulnerabilities
if: ${{ always() && steps.check_languages.outputs.uses_node == 'true' }}
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "fs"
skip-files: "**/poetry.lock,**/go.mod,**/pom.xml"
Expand All @@ -290,7 +290,7 @@ jobs:
trivy-config: trivy.yaml
- name: Check go vulnerabilities
if: ${{ always() && steps.check_languages.outputs.uses_go == 'true' }}
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "fs"
skip-files: "**/poetry.lock,**/package-lock.json,**/pom.xml"
Expand All @@ -302,7 +302,7 @@ jobs:
exit-code: "1"
- name: Check java vulnerabilities
if: ${{ always() && steps.check_languages.outputs.uses_java == 'true' }}
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "fs"
skip-files: "**/poetry.lock,**/package-lock.json,**/go.mod"
Expand Down Expand Up @@ -486,7 +486,7 @@ jobs:
make docker-build

- name: Check docker vulnerabilities
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
with:
scan-type: "image"
image-ref: ${{ matrix.docker_image }}
Expand Down
Loading