woodpecker/.woodpecker/securityscan.yaml
renovate[bot] a4a77c8488
chore(deps): update docker.io/woodpeckerci/plugin-trivy docker tag to v1.4.0 (#4865)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-02-16 19:30:38 +01:00

41 lines
762 B
YAML

when:
- event: [pull_request]
- event: push
branch:
- ${CI_REPO_DEFAULT_BRANCH}
variables:
- &trivy_plugin docker.io/woodpeckerci/plugin-trivy:1.4.0
steps:
backend:
depends_on: []
image: *trivy_plugin
settings:
server: server
skip-dirs: web/,docs/
docs:
depends_on: []
image: *trivy_plugin
settings:
server: server
skip-dirs: node_modules/,plugins/woodpecker-plugins/node_modules/
dir: docs/
web:
depends_on: []
image: *trivy_plugin
settings:
server: server
skip-dirs: node_modules/
dir: web/
services:
server:
image: *trivy_plugin
settings:
service: true
db-repository: mirror.gcr.io/aquasec/trivy-db:2
ports:
- 10000