2023-02-05 14:04:02 +09:00
|
|
|
name: Dockle
|
|
|
|
|
|
|
|
on:
|
|
|
|
push:
|
|
|
|
branches:
|
2024-03-20 21:15:37 +09:00
|
|
|
- beta
|
|
|
|
- io
|
|
|
|
- host
|
2023-02-05 14:04:02 +09:00
|
|
|
pull_request:
|
|
|
|
|
|
|
|
jobs:
|
|
|
|
dockle:
|
|
|
|
runs-on: ubuntu-latest
|
|
|
|
steps:
|
2023-11-09 02:43:24 +09:00
|
|
|
- name: Checkout code
|
2023-11-09 17:43:42 +09:00
|
|
|
uses: actions/checkout@v4
|
2023-11-09 02:43:24 +09:00
|
|
|
- name: Build an image from Dockerfile
|
2023-11-09 17:43:42 +09:00
|
|
|
uses: docker/build-push-action@v5
|
2023-11-09 02:43:24 +09:00
|
|
|
with:
|
|
|
|
context: .
|
|
|
|
push: false
|
|
|
|
provenance: false
|
|
|
|
cache-from: type=registry,ref=ghcr.io/misskeyio/misskey:io-buildcache
|
|
|
|
tags: |
|
|
|
|
misskey:scan
|
|
|
|
- name: Run dockle
|
2024-06-16 19:19:53 +09:00
|
|
|
uses: docker://goodwithtech/dockle:v0.4.14
|
|
|
|
env:
|
|
|
|
DOCKLE_OUTPUT_FORMAT: list
|
|
|
|
DOCKLE_EXIT_CODE: 1
|
|
|
|
DOCKLE_EXIT_LEVEL: WARN
|
|
|
|
DOCKLE_IGNORES: CIS-DI-0005,CIS-DI-0010
|
|
|
|
DOCKLE_DEBUG: true
|
2023-11-09 02:43:24 +09:00
|
|
|
with:
|
2024-06-16 19:19:53 +09:00
|
|
|
args: 'misskey:scan'
|