Skip to content

Schedule - Scan Images #3

Schedule - Scan Images

Schedule - Scan Images #3

name: "Schedule - Scan Images"
on: # yamllint disable-line rule:truthy
schedule:
- cron: "0 12 * * 1"
workflow_dispatch:
# yamllint disable rule:line-length
jobs:
scan:
name: Trivy
runs-on: ubuntu-latest
container:
image: ghcr.io/sovereigncloudstack/cso-builder:1.0.0
credentials:
username: ${{ github.actor }}
password: ${{ secrets.github_token }}
steps:
- name: Checkout repository
uses: actions/checkout@8e5e7e5ab8b370d6c329ec480221332ada57f0ab # v3.5.2
- name: Fixup git permissions
# https://github.com/actions/checkout/issues/766
shell: bash
run: git config --global --add safe.directory "$GITHUB_WORKSPACE"
- name: Verify Containers
env:
TRIVY_PASSWORD: ${{ secrets.GITHUB_TOKEN }}
TRIVY_USERNAME: ${{ github.actor }}
run: make verify-container-images