|
|
@ -53,7 +53,8 @@ steps: |
|
|
|
environment: |
|
|
|
REGISTRY: registry.fedy95.com |
|
|
|
commands: |
|
|
|
- "grype $REGISTRY/baseimage-yamllint:$DRONE_COMMIT_SHA --scope all-layers --fail-on=critical" |
|
|
|
# - "grype $REGISTRY/baseimage-yamllint:$DRONE_COMMIT_SHA --scope all-layers --fail-on=critical" |
|
|
|
- "grype --help" |
|
|
|
when: |
|
|
|
event: pull_request |
|
|
|
|
|
|
@ -64,9 +65,6 @@ steps: |
|
|
|
path: /var/run/docker.sock |
|
|
|
commands: |
|
|
|
- docker rmi registry.fedy95.com/baseimage-yamllint:$DRONE_COMMIT_SHA |
|
|
|
depends_on: |
|
|
|
- trivy security check |
|
|
|
- grype security check |
|
|
|
when: |
|
|
|
event: pull_request |
|
|
|
|
|
|
|