Skip to content

Commit 6348a8d

Browse files
committed
final Sysdig image scan workflow
1 parent 76e40d5 commit 6348a8d

File tree

1 file changed

+13
-13
lines changed

1 file changed

+13
-13
lines changed

.github/workflows/scan.yml

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ jobs:
1010
image-scan:
1111
runs-on: ubuntu-latest
1212

13-
# 🧪 環境変数の注入(ここが非常に重要
13+
# 🧪 環境変数の注入(Secretsから取得
1414
env:
1515
SECURE_API_TOKEN: ${{ secrets.SECURE_API_TOKEN }}
1616
SYS_DIG_SECURE_URL: https://app.au1.sysdig.com
@@ -30,28 +30,28 @@ jobs:
3030
docker run --rm \
3131
-v /var/run/docker.sock:/var/run/docker.sock \
3232
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
33-
scan \
34-
--apiurl $SYS_DIG_SECURE_URL \
35-
--token $SECURE_API_TOKEN \
36-
docker://voting-app
33+
scan \
34+
--apiurl $SYS_DIG_SECURE_URL \
35+
--token $SECURE_API_TOKEN \
36+
docker://voting-app
3737
3838
- name: 🔍 Run Sysdig Scan (worker)
3939
run: |
4040
docker run --rm \
4141
-v /var/run/docker.sock:/var/run/docker.sock \
4242
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
43-
scan \
44-
--apiurl $SYS_DIG_SECURE_URL \
45-
--token $SECURE_API_TOKEN \
46-
docker://worker
43+
scan \
44+
--apiurl $SYS_DIG_SECURE_URL \
45+
--token $SECURE_API_TOKEN \
46+
docker://worker
4747
4848
- name: 🔍 Run Sysdig Scan (result)
4949
run: |
5050
docker run --rm \
5151
-v /var/run/docker.sock:/var/run/docker.sock \
5252
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
53-
scan \
54-
--apiurl $SYS_DIG_SECURE_URL \
55-
--token $SECURE_API_TOKEN \
56-
docker://result
53+
scan \
54+
--apiurl $SYS_DIG_SECURE_URL \
55+
--token $SECURE_API_TOKEN \
56+
docker://result
5757

0 commit comments

Comments
 (0)