Skip to content

tests: periodic trivy security scans on the master branch #2184

@nodiscc

Description

@nodiscc

https://github.com/shaarli/Shaarli/actions/workflows/trivy-release.yml runs daily security security scans against dependencies of the latest release.

But it doesn't verify that the master branch/latest docker image is free of vulnerable dependencies.

Metadata

Metadata

Assignees

No one assigned

    Labels

    dependenciesPull requests that update a dependency filesecuritytoolsdeveloper tools

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions