From 915761930797b23805fedea33e54b56e9507bc74 Mon Sep 17 00:00:00 2001 From: nanuchi Date: Fri, 27 Oct 2023 15:16:43 +0200 Subject: [PATCH] Update main.yml --- .github/workflows/main.yml | 20 ++++++++++++++++++++ 1 file changed, 20 insertions(+) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 5d9eb8c..366889f 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -55,8 +55,28 @@ jobs: name: safety-check-findings path: sca-report.json + image_scan: + name: Build Image and Run Image Scan + runs-on: ubuntu-latest + + steps: + - name: Checkout code + uses: actions/checkout@v2 + + - name: Set up Docker + uses: docker-practice/actions-setup-docker@v1 + with: + docker_version: '20.10.7' + - name: Build Docker Image + run: docker build -f Dockerfile -t myapp:latest . + - name: Docker Scout Scan + run: | + curl -fsSL https://raw.githubusercontent.com/docker/scout-cli/main/install.sh -o install-scout.sh + sh install-scout.sh + docker scout quickview + docker scout cves