Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Scan images and upload results before pushing them #132

Merged
merged 8 commits into from
Jul 18, 2024
Merged

Scan images and upload results before pushing them #132

merged 8 commits into from
Jul 18, 2024

Conversation

Itxaka
Copy link
Member

@Itxaka Itxaka commented Jul 18, 2024

This adds trivy and grype scanning to PRs, failing the job when they dont pass.

It also pushes the sarif results on merge to master

This adds trivy and grype scanning to PRs, failing the job when they
dont pass.

It also pushes the sarif results on merge to master

Signed-off-by: Itxaka <[email protected]>
@Itxaka Itxaka requested a review from a team July 18, 2024 07:32
Copy link

Bump of Kairos repositories

Important

Full package list from new repo

Name Category Version
alpine initrd 3.8.2
grub-config static 0.11
immucore system 0.4.1
kairos-agent system 2.13.1
kairos-network dracut 1.1.0
kairos-overlay-files static 1.1.42
kairos-sysext dracut 1.0.0
kcrypt system 0.12.0
kcrypt-challenger system 0.9.0
suc-upgrade system 0.2.1
alpine initrd 3.8.2
grub-config static 0.11
immucore fips 0.4.1
kairos-agent fips 2.13.1
kairos-network dracut 1.1.0
kairos-overlay-files static 1.1.42
kairos-sysext dracut 1.0.0
kcrypt fips 0.12.0
kcrypt-challenger fips 0.9.0
suc-upgrade system 0.2.1

Now on PR it will fail if it founds a critical one.
On push it will NOT fail and just report to the security tab

Signed-off-by: Itxaka <[email protected]>
Signed-off-by: Itxaka <[email protected]>
Signed-off-by: Itxaka <[email protected]>
@Itxaka Itxaka merged commit 70ca78c into main Jul 18, 2024
5 checks passed
@Itxaka Itxaka deleted the vuln_check branch July 18, 2024 08:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants