ci: 🚧 pre-log in and pull image with docker for scan?
Some checks failed
ci/woodpecker/push/scans Pipeline was successful
ci/woodpecker/push/build Pipeline failed

This commit is contained in:
Radek Goláň jr. 2024-10-31 10:17:46 +01:00
parent 4de3431e50
commit 0b543c5b70
Signed by: shield
GPG Key ID: D86423BFC31F3591

View File

@ -67,7 +67,9 @@ steps:
TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db
TRIVY_CHECKS_BUNDLE_REPOSITORY: public.ecr.aws/aquasecurity/trivy-checks
commands:
- trivy image --debug dev.shielddagger.com/opensource/discord-notifier:latest --exit-code 1 --username $TRIVY_USER --severity HIGH,CRITICAL
- docker login dev.shielddagger.com --username $TRIVY_USER --password $TRIVY_USER
- docker pull dev.shielddagger.com/opensource/discord-notifier:latest
- trivy image --platform linux/arm64 --debug dev.shielddagger.com/opensource/discord-notifier:latest --exit-code 1 --username $TRIVY_USER --severity HIGH,CRITICAL
when:
- event: push
branch: main