|
74 | 74 | required: false |
75 | 75 | description: Unique id per workflow run. Must be set to unique value if dispatched multiple times for a single workflow. |
76 | 76 | default: "" |
| 77 | + trivy_enable: |
| 78 | + description: "Enable trivy scans on lock files" |
| 79 | + default: false # Enable this by default? |
| 80 | + type: boolean |
| 81 | + required: false |
| 82 | + trivy_severity: |
| 83 | + description: "Severity for the trivy scans" |
| 84 | + type: string |
| 85 | + required: false |
77 | 86 | chromatic_enable: |
78 | 87 | description: 'Enable Chromatic tests' |
79 | 88 | required: false |
@@ -151,6 +160,8 @@ jobs: |
151 | 160 | enable_python: false |
152 | 161 | # We probably won't need Rust on Node builds... |
153 | 162 | # enable_rust: ${{ inputs.rust_enable }} |
| 163 | + trivy_enable: ${{ inputs.trivy_enable }} |
| 164 | + trivy_severity: ${{ inputs.trivy_severity }} |
154 | 165 | run_parallel: ${{ inputs.run_parallel }} |
155 | 166 | node_version: ${{ vars.NODE_VERSION || inputs.node_version }} |
156 | 167 | npm_registry: ${{ vars.NPM_REGISTRY }} |
@@ -191,6 +202,8 @@ jobs: |
191 | 202 | with: |
192 | 203 | enable_node: false |
193 | 204 | enable_python: true |
| 205 | + trivy_enable: ${{ inputs.trivy_enable }} |
| 206 | + trivy_severity: ${{ inputs.trivy_severity }} |
194 | 207 | enable_rust: ${{ inputs.rust_enable }} |
195 | 208 | run_parallel: ${{ inputs.run_parallel }} |
196 | 209 | node_version: ${{ vars.NODE_VERSION || inputs.node_version }} |
@@ -282,6 +295,8 @@ jobs: |
282 | 295 | - name: Build node and python |
283 | 296 | uses: ./tmp/github-workflows/.github/actions/build-node-python |
284 | 297 | with: |
| 298 | + trivy_enable: ${{ inputs.trivy_enable }} |
| 299 | + trivy_severity: ${{ inputs.trivy_severity }} |
285 | 300 | enable_rust: ${{ inputs.rust_enable }} |
286 | 301 | run_parallel: ${{ inputs.run_parallel }} |
287 | 302 | node_version: ${{ vars.NODE_VERSION || inputs.node_version }} |
@@ -425,6 +440,8 @@ jobs: |
425 | 440 | - name: Build node and python |
426 | 441 | uses: ./tmp/github-workflows/.github/actions/build-node-python |
427 | 442 | with: |
| 443 | + trivy_enable: ${{ inputs.trivy_enable }} |
| 444 | + trivy_severity: ${{ inputs.trivy_severity }} |
428 | 445 | enable_rust: ${{ inputs.rust_enable }} |
429 | 446 | run_parallel: ${{ inputs.run_parallel }} |
430 | 447 | node_version: ${{ vars.NODE_VERSION || inputs.node_version }} |
|
0 commit comments