philips-software / docker-ci-scripts

Docker CI scripts
MIT License
12 stars 9 forks source link

Check vulnerabilities #162

Closed JeroenKnoops closed 2 years ago

JeroenKnoops commented 2 years ago

Add reusable workflow to check vulnerabilities for the given images.

This workflow will only work for keyless signed images. See https://github.com/philips-software/docker-node/pull/133 for more info on this.

TODO

Add some more documentation around this, but we first want to debug this and smoothen the workflows.. now the list of images is redundant which is fragile.