Limit trivy output

This commit is contained in:
Radek Golan 2024-04-24 14:03:38 +02:00
parent 12c37086fb
commit 30649b5a76

View File

@ -15,6 +15,8 @@ steps:
- echo ${CI_COMMIT_SHA:0:8} > .version - echo ${CI_COMMIT_SHA:0:8} > .version
- name: dryrun - name: dryrun
image: woodpeckerci/plugin-docker-buildx image: woodpeckerci/plugin-docker-buildx
environment:
IMAGE_REPO_URL: *repo
backend_options: backend_options:
kubernetes: kubernetes:
securityContext: securityContext:
@ -22,7 +24,7 @@ steps:
settings: settings:
dockerfile: *file dockerfile: *file
platforms: linux/arm64,linux/amd64 platforms: linux/arm64,linux/amd64
cache_from: type=registry,ref=dev.shielddagger.com/infra/discord-notifier cache_from: type=registry,ref=${IMAGE_REPO_URL}
cache_to: type=inline cache_to: type=inline
dry_run: true dry_run: true
repo: *repo repo: *repo
@ -64,7 +66,7 @@ steps:
TRIVY_PASSWORD: TRIVY_PASSWORD:
from_secret: registry_password from_secret: registry_password
commands: commands:
- trivy image dev.shielddagger.com/infra/discord-notifier --exit-code 1 --username $TRIVY_USER - trivy image dev.shielddagger.com/infra/discord-notifier --exit-code 1 --username $TRIVY_USER --severity HIGH,CRITICAL
when: when:
- event: push - event: push
branch: main branch: main
@ -74,7 +76,7 @@ steps:
settings: settings:
webhook_url: webhook_url:
from_secret: discord_webhook from_secret: discord_webhook
woodpecker_url: https://ci.shielddagger.com woodpecker_url: https://ci.shielddagger.com/api
woodpecker_token: woodpecker_token:
from_secret: woodpecker_token from_secret: woodpecker_token
icon_url: https://dev.shielddagger.com/repo-avatars/273e88fa2afde290121dc7b5987dc366b88325f147bf1e5766bca26296bbc1f9 icon_url: https://dev.shielddagger.com/repo-avatars/273e88fa2afde290121dc7b5987dc366b88325f147bf1e5766bca26296bbc1f9