confluentinc / kafka-connect-hdfs

Kafka Connect HDFS connector
Other
12 stars 396 forks source link

replace twistlock scanning with trivy #707

Closed ap00rv closed 1 week ago

ap00rv commented 3 weeks ago

Background

This PR is being created to enable trivy scanning for this repository by replacing the existing cve_scan and run_maven_cve_scan semaphore configurations with trivy_scan. This is part of a larger effort to improve Third party vulnerability (CVE) detection workflow for connectors by:

🚨## Action needed🚨 Please approve and merge this change. Once you merge it, you will get another PR from service-bot to add trivy scanning to the pipeline. Please approve and merge both PRs before November 11, 2024. If status checks are failing, please debug as necessary. Contact #appsec slack channel for help.

confluent-cla-assistant[bot] commented 3 weeks ago

:tada: All Contributor License Agreements have been signed. Ready to merge.
Please push an empty commit if you would like to re-run the checks to verify CLA status for all contributors.

sonarqube-confluent[bot] commented 3 weeks ago

Passed

Analysis Details

0 Issues

Coverage and Duplications

Project ID: kafka-connect-hdfs

View in SonarQube