feature-5232-Trivy-Security-Scans

This commit is contained in:
Akhil Anand 2023-10-10 18:28:39 +05:30
parent 8a4302ffe6
commit 9ce24ff32c

27
.github/workflows/trivy.yml vendored Normal file
View file

@ -0,0 +1,27 @@
name: Trivy
on:
pull_request:
push:
jobs:
scan:
runs-on: ubuntu-latest
steps:
- name: Check out code
uses: actions/checkout@v3
with:
submodules: recursive
- name: Build the Docker image
run: docker build . -t appwrite_image:latest
- name: Run Trivy vulnerability scanner
uses: aquasecurity/trivy-action@master
with:
image-ref: 'appwrite_image:latest'
format: 'table'
exit-code: '1'
ignore-unfixed: 'false'
severity: 'CRITICAL,HIGH'