numerique-gouv / people

Teams management application
MIT License
13 stars 1 forks source link

Separate security scan for frontend too #519

Closed Morendil closed 1 week ago

Morendil commented 1 week ago

Purpose

Separate security scan from build-and-push, so we can make it optional in CI; this was the case for the backend but frontend was overlooked…

Trivy scans still occasionally fail for wrong reasons (but are still useful despite that).