Skip to content

Commit

Permalink
Don't fail workflow if vulns are found, use sarif upload instead
Browse files Browse the repository at this point in the history
  • Loading branch information
pgschk committed Jan 20, 2024
1 parent d30518f commit 3ee75d8
Showing 1 changed file with 0 additions and 3 deletions.
3 changes: 0 additions & 3 deletions .github/workflows/trivy-schedule.yml
Original file line number Diff line number Diff line change
Expand Up @@ -18,11 +18,8 @@ jobs:
steps:
- name: Run Trivy vulnerability scanner
uses: aquasecurity/trivy-action@0.16.1
env:
TRIVY_OFFLINE_SCAN: true
with:
image-ref: '${{ env.IMAGE_NAME }}:${{ env.IMAGE_TAG }}'
exit-code: '1'
ignore-unfixed: true
vuln-type: 'os,library'
format: 'sarif'
Expand Down

0 comments on commit 3ee75d8

Please sign in to comment.