73 introduces a new workflow for scanning published images from a container registry. This workflow could be unified with the existing scan-rock.yaml to have a more generic workflow that applies everywhere.
What needs to get done
Merge scan-rock.yaml and scan-from-published-image.yaml workflows. The new workflow should be capable of receiving a rock or a container image from a public registry so it is scanned.
Definition of Done
A single workflow exists instead of two separate ones.
Context
73 introduces a new workflow for scanning published images from a container registry. This workflow could be unified with the existing
scan-rock.yaml
to have a more generic workflow that applies everywhere.What needs to get done
Merge
scan-rock.yaml
andscan-from-published-image.yaml
workflows. The new workflow should be capable of receiving a rock or a container image from a public registry so it is scanned.Definition of Done
A single workflow exists instead of two separate ones.