-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Description
Description
Audit all OAMD containers used by the denver pipeline to ensure they have no HIGH or CRITICAL vulnerabilities.
Scope
Containers to audit:
- oamd-bio-fastqc
- oamd-bio-multiqc
- oamd-bio-bwa
- oamd-bio-samtools
- oamd-bio-ivar
- oamd-bio-bedtools
- oamd-bio-nextclade
- oamd-bio-mafft
Approach
Use docker-btp ecosystem tooling for vulnerability scanning. Details to be provided when task is prioritized.
Acceptance Criteria
- All containers scanned for vulnerabilities
- No HIGH or CRITICAL vulnerabilities present
- Scanning integrated into container build CI/CD
- Documentation updated with security scanning process
Related
- Container configuration: configs/amd_containers.config
- Tech debt issue [Tech Debt] Re-enable nf-test CI when CDC runners available #28 (re-enable nf-test CI)
Metadata
Metadata
Assignees
Labels
No labels