Skip to content

CHEF-33010 Added grype scan config#999

Merged
Nik08 merged 1 commit intomainfrom
nm/grype-scan-flags
Apr 8, 2026
Merged

CHEF-33010 Added grype scan config#999
Nik08 merged 1 commit intomainfrom
nm/grype-scan-flags

Conversation

@Nik08
Copy link
Copy Markdown
Contributor

@Nik08 Nik08 commented Mar 27, 2026

This PR updates the CI workflow configuration to enable Grype vulnerability scanning and renames the stub file to remove the version suffix.

  • Renamed ci-main-pull-request-stub-1.0.8.yml to ci-main-pull-request-stub.yml
  • Enabled Grype vulnerability scanning (perform-grype-scan: true)
  • Configured build failure on high/critical vulnerabilities
  • Added run-bundle-install: true to generate Gemfile.lock at runtime for the SBOM/BlackDuck SCA pipeline

@Nik08 Nik08 requested a review from a team as a code owner March 27, 2026 10:31
@netlify
Copy link
Copy Markdown

netlify Bot commented Mar 27, 2026

Deploy Preview for inspec-aws canceled.

Name Link
🔨 Latest commit 21115e3
🔍 Latest deploy log https://app.netlify.com/projects/inspec-aws/deploys/69d67c1ac9f15b0008bbef42

@Nik08 Nik08 force-pushed the nm/grype-scan-flags branch from 21ea164 to 7ad4803 Compare March 27, 2026 10:33
This PR updates the CI workflow configuration to enable Grype vulnerability scanning.

- Renamed versioned stub file to `ci-main-pull-request-stub.yml`
- Enabled Grype vulnerability scanning (`perform-grype-scan: true`)
- Configured build failure on high/critical vulnerabilities
- Added `run-bundle-install: true` to generate `Gemfile.lock` at runtime for the SBOM pipeline

Signed-off-by: Nikita Mathur <nikita.mathur@progress.com>
@Nik08 Nik08 force-pushed the nm/grype-scan-flags branch from 95a4585 to 21115e3 Compare April 8, 2026 16:02
@Nik08 Nik08 merged commit b07054a into main Apr 8, 2026
32 of 35 checks passed
@Nik08 Nik08 deleted the nm/grype-scan-flags branch April 8, 2026 16:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant