Skip to content

Shanice/transition ecs infra #60

Shanice/transition ecs infra

Shanice/transition ecs infra #60

Workflow file for this run

name: Trivy Security Scan
on:
pull_request:
push:
branches:
- main
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
jobs:
trivy:
name: trivy
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@v4
- name: Run Trivy vulnerability scanner
uses: aquasecurity/[email protected]
with:
scan-type: "fs"
scan-ref: "terraform/modules/"
scanners: "vuln,secret,config"
ignore-unfixed: false
exit-code: "1"
format: "table"
severity: "CRITICAL,HIGH"