File tree Expand file tree Collapse file tree 1 file changed +13
-13
lines changed Expand file tree Collapse file tree 1 file changed +13
-13
lines changed Original file line number Diff line number Diff line change 10
10
image-scan :
11
11
runs-on : ubuntu-latest
12
12
13
- # 🧪 環境変数の注入(ここが非常に重要 )
13
+ # 🧪 環境変数の注入(Secretsから取得 )
14
14
env :
15
15
SECURE_API_TOKEN : ${{ secrets.SECURE_API_TOKEN }}
16
16
SYS_DIG_SECURE_URL : https://app.au1.sysdig.com
@@ -30,28 +30,28 @@ jobs:
30
30
docker run --rm \
31
31
-v /var/run/docker.sock:/var/run/docker.sock \
32
32
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
33
- scan \
34
- --apiurl $SYS_DIG_SECURE_URL \
35
- --token $SECURE_API_TOKEN \
36
- docker://voting-app
33
+ scan \
34
+ --apiurl $SYS_DIG_SECURE_URL \
35
+ --token $SECURE_API_TOKEN \
36
+ docker://voting-app
37
37
38
38
- name : 🔍 Run Sysdig Scan (worker)
39
39
run : |
40
40
docker run --rm \
41
41
-v /var/run/docker.sock:/var/run/docker.sock \
42
42
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
43
- scan \
44
- --apiurl $SYS_DIG_SECURE_URL \
45
- --token $SECURE_API_TOKEN \
46
- docker://worker
43
+ scan \
44
+ --apiurl $SYS_DIG_SECURE_URL \
45
+ --token $SECURE_API_TOKEN \
46
+ docker://worker
47
47
48
48
- name : 🔍 Run Sysdig Scan (result)
49
49
run : |
50
50
docker run --rm \
51
51
-v /var/run/docker.sock:/var/run/docker.sock \
52
52
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
53
- scan \
54
- --apiurl $SYS_DIG_SECURE_URL \
55
- --token $SECURE_API_TOKEN \
56
- docker://result
53
+ scan \
54
+ --apiurl $SYS_DIG_SECURE_URL \
55
+ --token $SECURE_API_TOKEN \
56
+ docker://result
57
57
You can’t perform that action at this time.
0 commit comments