From 4c608b01c9488c497443d287938b066ef97beaa8 Mon Sep 17 00:00:00 2001 From: Elia el Lazkani Date: Mon, 3 Jul 2023 19:05:23 +0200 Subject: [PATCH] chore(): Adds a Trivy scanning step --- .drone.yml | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/.drone.yml b/.drone.yml index b56f2b4..a5acdce 100644 --- a/.drone.yml +++ b/.drone.yml @@ -15,10 +15,16 @@ steps: repo: scm.project42.io/elia/trivy dry_run: true squash: true + purge: false tags: - pre-scan - "${DRONE_COMMIT_SHA:0:8}" +- name: trivy-scan + image: scm.project42.io/elia/trivy:production + commands: + - trivy image scm.project42.io/elia/trivy:pre-scan + trigger: exclude: event: