You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I've noticed an inconsistency between the example provided in the README for the Trivy GitHub Action and the official CLI documentation for trivy config.
However, in the official CLI documentation for trivy config (https://aquasecurity.github.io/trivy/v0.27.1/docs/references/cli/config/), the ignore-unfixed option is not listed as a supported option.
When attempting to use ignore-unfixed with trivy config in the CLI, it results in an error stating that the option is not supported.
Questions:
Is the ignore-unfixed option supposed to work with trivy config in the GitHub Action, despite not being supported in the CLI?
If it's not supposed to work, should the example in the README be updated to remove this option for IaC scans?
If it is supposed to work, could the CLI documentation be updated to reflect this?
Thanks!
The text was updated successfully, but these errors were encountered:
Hello Trivy team,
I've noticed an inconsistency between the example provided in the README for the Trivy GitHub Action and the official CLI documentation for
trivy config
.In the GitHub Action example for scanning Infrastructure as Code (https://github.com/aquasecurity/trivy-action?tab=readme-ov-file#using-trivy-to-scan-infrastructure-as-code), the following option is used:
However, in the official CLI documentation for trivy config (https://aquasecurity.github.io/trivy/v0.27.1/docs/references/cli/config/), the ignore-unfixed option is not listed as a supported option.
When attempting to use ignore-unfixed with trivy config in the CLI, it results in an error stating that the option is not supported.
Questions:
Is the ignore-unfixed option supposed to work with trivy config in the GitHub Action, despite not being supported in the CLI?
If it's not supposed to work, should the example in the README be updated to remove this option for IaC scans?
If it is supposed to work, could the CLI documentation be updated to reflect this?
Thanks!
The text was updated successfully, but these errors were encountered: