Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add Trivy Scanning to build/publish pipeline #83

Open
joelmccoy opened this issue Aug 21, 2024 · 0 comments
Open

Add Trivy Scanning to build/publish pipeline #83

joelmccoy opened this issue Aug 21, 2024 · 0 comments

Comments

@joelmccoy
Copy link
Collaborator

Trivy has the ability to scan AMIs. We should introduce it in this pipeline in order vulnerability reporting/feedback on the AMIs we build. This can probably be introduced in a non-blocking mode to just provide insight into current vulns, and then based on that data we can determine if we want to fail CI based on results of the scans.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant