tyriis / home-ops

IaC for my HomeLab kubernetes cluster resources with Flux
https://github.com/tyriis/home-ops/blob/main/README.md
40 stars 2 forks source link

ci(github-action): update aquasecurity/trivy-action ( 0.28.0 β†’ 0.29.0 ) #4002

Closed tyriis-automation[bot] closed 1 week ago

tyriis-automation[bot] commented 1 week ago

This PR contains the following updates:

Package Type Update Change OpenSSF
aquasecurity/trivy-action action minor 0.28.0 -> 0.29.0 OpenSSF Scorecard

[!WARNING] Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

aquasecurity/trivy-action (aquasecurity/trivy-action) ### [`v0.29.0`](https://redirect.github.com/aquasecurity/trivy-action/releases/tag/0.29.0) [Compare Source](https://redirect.github.com/aquasecurity/trivy-action/compare/0.28.0...0.29.0) #### What's Changed - feat: Allow skipping setup by [@​rvesse](https://redirect.github.com/rvesse) in [https://github.com/aquasecurity/trivy-action/pull/414](https://redirect.github.com/aquasecurity/trivy-action/pull/414) - Fix oras command not found in "Update Trivy Cache" action by [@​Tiryoh](https://redirect.github.com/Tiryoh) in [https://github.com/aquasecurity/trivy-action/pull/413](https://redirect.github.com/aquasecurity/trivy-action/pull/413) - Update README.md by [@​simar7](https://redirect.github.com/simar7) in [https://github.com/aquasecurity/trivy-action/pull/420](https://redirect.github.com/aquasecurity/trivy-action/pull/420) - feat: add token for `setup-trivy` by [@​DmitriyLewen](https://redirect.github.com/DmitriyLewen) in [https://github.com/aquasecurity/trivy-action/pull/421](https://redirect.github.com/aquasecurity/trivy-action/pull/421) - fix: bump `setup-trivy` and add new `contrib` directory path info by [@​DmitriyLewen](https://redirect.github.com/DmitriyLewen) in [https://github.com/aquasecurity/trivy-action/pull/424](https://redirect.github.com/aquasecurity/trivy-action/pull/424) - docs: remove ignore-unfixed from IaC scan example by [@​nikpivkin](https://redirect.github.com/nikpivkin) in [https://github.com/aquasecurity/trivy-action/pull/429](https://redirect.github.com/aquasecurity/trivy-action/pull/429) - chore(deps): Bump trivy to v0.57.1 by [@​simar7](https://redirect.github.com/simar7) in [https://github.com/aquasecurity/trivy-action/pull/434](https://redirect.github.com/aquasecurity/trivy-action/pull/434) #### New Contributors - [@​rvesse](https://redirect.github.com/rvesse) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/414](https://redirect.github.com/aquasecurity/trivy-action/pull/414) - [@​Tiryoh](https://redirect.github.com/Tiryoh) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/413](https://redirect.github.com/aquasecurity/trivy-action/pull/413) **Full Changelog**: https://github.com/aquasecurity/trivy-action/compare/0.28.0...0.29.0

Configuration

πŸ“… Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

β™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

πŸ”• Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Renovate Bot.

sonarcloud[bot] commented 1 week ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
0.0% Coverage on New Code
0.0% Duplication on New Code

See analysis details on SonarQube Cloud

tyriis-automation[bot] commented 1 week ago

πŸ¦™ MegaLinter status: βœ… SUCCESS

Descriptor Linter Files Fixed Errors Elapsed time
βœ… REPOSITORY gitleaks yes no 3.36s

See detailed report in MegaLinter reports _Set VALIDATE_ALL_CODEBASE: true in mega-linter.yml to validate all sources, not only the diff_

MegaLinter is graciously provided by OX Security