From dcf2284b4c53758253077e4de3131c378a0307aa Mon Sep 17 00:00:00 2001 From: fedy95 Date: Mon, 28 Jun 2021 20:59:10 +0300 Subject: [PATCH] add-grype --- .drone.yml | 7 +++---- 1 file changed, 3 insertions(+), 4 deletions(-) diff --git a/.drone.yml b/.drone.yml index 81c48ec..20eed2c 100644 --- a/.drone.yml +++ b/.drone.yml @@ -29,7 +29,7 @@ steps: when: event: pull_request - - name: trivy + - name: trivy security scan image: aquasec/trivy volumes: - name: dockersock @@ -45,7 +45,7 @@ steps: when: event: pull_request - - name: grype + - name: grype security scan image: docker:dind volumes: - name: dockersock @@ -55,7 +55,7 @@ steps: commands: - apk add --no-cache curl - "curl -sSfL https://raw.githubusercontent.com/anchore/grype/main/install.sh | \ - sh -s -- -b /usr/local/bin" + sh -s -- -b /usr/local/bin" - "grype $REGISTRY/baseimage-yamllint:$DRONE_COMMIT_SHA \ --scope all-layers \ --fail-on=critical \ @@ -72,7 +72,6 @@ steps: - docker rmi registry.fedy95.com/baseimage-yamllint:$DRONE_COMMIT_SHA when: event: pull_request - depends_on: [trivy, grype] - name: release image: docker:dind