Skip to content

fix

fix #233

Workflow file for this run

name: Aqua
on: pull_request
jobs:
aqua:
name: trivy
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@v2
# container-test-job:
# runs-on: ubuntu-latest
# container:
# image: 151013160191/trivy-user-test:tagname
# env:
# AQUA_KEY: ${{ secrets.AQUA_KEY_CNAPP_DEV }}
# AQUA_SECRET: ${{ secrets.AQUA_SECRET_CNAPP_DEV }}
# GITHUB_TOKEN: ${{ github.token }}
# AQUA_URL: https://api.dev.supply-chain.cloud.aquasec.com
# CSPM_URL: https://stage.api.cloudsploit.com
# TRIVY_RUN_AS_PLUGIN: 'aqua'
# volumes:
# - /home/runner/work/_temp/_github_home:/gituser/home
# - /var/run/docker.sock:/var/run/docker.sock
# - /home/runner/work/_temp/_github_home:/github/home
# - /home/runner/work/_temp/_github_workflow":"/github/workflow" -v "/home/runner/work/_temp/_runner_file_commands":"/github/file_commands" -v "/home/runner/work/chat-app/chat-app":"/github/workspace"
# steps:
# - name: Check for dockerenv file
# run: |
# trivy fs --scanners config,vuln,secret .
- name: Run Aqua scanner- trivytestdocker
uses: docker://aquasec/aqua-scanner:latest
with:
args: trivy fs --scanners config,vuln,secret --debug .
env:
AQUA_KEY: ${{ secrets.AQUA_KEY_CLOUD_DEV }}
AQUA_SECRET: ${{ secrets.AQUA_SECRET_CLOUD_DEV }}
GITHUB_TOKEN: ${{ github.token }}
AQUA_URL: https://api.dev.supply-chain.cloud.aquasec.com
CSPM_URL: https://stage.api.cloudsploit.com
TRIVY_RUN_AS_PLUGIN: 'aqua'
DOTNET_PROJ: 1