1
0
mirror of https://github.com/woodpecker-ci/woodpecker.git synced 2024-12-12 08:23:48 +02:00
woodpecker/.woodpecker/securityscan.yml

36 lines
719 B
YAML
Raw Normal View History

when:
2023-10-24 14:42:05 +02:00
- event: [pull_request, cron]
- event: push
branch:
- ${CI_REPO_DEFAULT_BRANCH}
- release/*
- renovate/*
variables:
- &trivy_image aquasec/trivy:0.46.1
- &trivy_plugin woodpeckerci/plugin-trivy:1.0.1
steps:
check backend:
depends_on: []
image: *trivy_plugin
settings:
skip-dirs: web/,docs/
check docs:
depends_on: []
image: *trivy_plugin
settings:
skip-dirs: node_modules/,plugins/woodpecker-plugins/node_modules/
2023-10-24 14:42:05 +02:00
dir: docs/
when:
event: [pull_request, push, cron]
branch: ${CI_REPO_DEFAULT_BRANCH}
check web:
depends_on: []
image: *trivy_plugin
settings:
skip-dirs: node_modules/
2023-10-24 14:42:05 +02:00
dir: web/