Skip to content

Update scan_code.yml #8

Update scan_code.yml

Update scan_code.yml #8

Workflow file for this run

name: Container Security Scan
on:
push:
branches:
- '**'
# schedule:
# - cron: '0 12 * * 1' # Weekly scan on Mondays at 12:00 UTC
jobs:
security_scan:
runs-on: ubuntu-latest
env:
ImageName: ghcr.io/flaxandteal/arches_coral_static_py
ImageTag: v7.6.19-RELEASE
# ghcr.io/flaxandteal/arches_coral_static:dev-13650788094
steps:
- name: Checkout repository
uses: actions/checkout@v4
- name: Log in to GitHub Container Registry
run: echo "${{ secrets.GHCR_PAT }}" | docker login ghcr.io -u ${{ github.actor }} --password-stdin
- name: Pull container image
run: docker pull $ImageName:$ImageTag
- name: Run Snyk scan
uses: snyk/actions/docker@master
env:
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
with:
image: $ImageName:$ImageTag
# args: --file=Dockerfile --severity-threshold=high