-
Task
-
Resolution: Done
-
L3 - Default
-
None
-
None
-
S
Trivy for docker image scanning: https://github.com/aquasecurity/trivy
Snyk misses some stuff and there was one occasion where customers found a vulnerability that we hadn't seen. It is worth integrating such a check into our release process for added confidence.
The Zeebe controller repo has this integrated already. Maybe we can learn/copy something here.
The trivy check should get triggered when the pipeline does the smoketest for docker when merging to master
This is the controller panel for Smart Panels app
[OPT-6770] Trigger Trivy check upon merging to master
Description |
Original:
|Trivy for docker image scanning: [https://github.com/aquasecurity/trivy]
Snyk misses some stuff and there was one occasion where customers found a vulnerability that we hadn't seen. It is worth integrating such a check into our release process for added confidence. The Zeebe controller repo has this integrated already. Maybe we can learn/copy something here. The trivy check should get triggered when the pipeline does the smoketest for docker when merging to master| |
New:
Trivy for docker image scanning: [https://github.com/aquasecurity/trivy]
Snyk misses some stuff and there was one occasion where customers found a vulnerability that we hadn't seen. It is worth integrating such a check into our release process for added confidence. The Zeebe controller repo has this integrated already. Maybe we can learn/copy something here. The trivy check should get triggered when the pipeline does the smoketest for docker when merging to master |
Assignee | New: Michal Konopski [ michal.konopski ] |
Status | Original: Triage [ 10612 ] | New: In Development [ 10312 ] |
Assignee | Original: Michal Konopski [ michal.konopski ] | New: Omran Abazeed [ omran.abazeed ] |
Status | Original: In Development [ 10312 ] | New: In Review [ 10212 ] |
Assignee | Original: Omran Abazeed [ omran.abazeed ] | New: Michal Konopski [ michal.konopski ] |
Status | Original: In Review [ 10212 ] | New: Rework [ 11413 ] |
Assignee | Original: Michal Konopski [ michal.konopski ] | New: Joshua Windels [ joshua.windels ] |
Status | Original: Rework [ 11413 ] | New: In Review [ 10212 ] |
Assignee | Original: Joshua Windels [ joshua.windels ] | |
Resolution | New: Done [ 10000 ] | |
Status | Original: In Review [ 10212 ] | New: Done [ 10010 ] |
Fix Version/s | New: 3.11.0-alpha5 [ 18493 ] |
I merged this so we can see if it works for us this way