Skip to content

Commit c10289d

Browse files
committed
correct Sysdig image scan workflow
1 parent 4ee922e commit c10289d

File tree

1 file changed

+9
-9
lines changed

1 file changed

+9
-9
lines changed

.github/workflows/scan.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -6,13 +6,13 @@ on:
66
- main
77
workflow_dispatch:
88

9-
env:
10-
SYSDIG_SECURE_URL: https://app.au1.sysdig.com
11-
129
jobs:
1310
image-scan:
1411
runs-on: ubuntu-latest
1512

13+
env:
14+
SYSDIG_SECURE_URL: https://app.au1.sysdig.com
15+
1616
steps:
1717
- name: Checkout code
1818
uses: actions/checkout@v3
@@ -23,27 +23,27 @@ jobs:
2323
docker build -t worker ./worker
2424
docker build -t result ./result
2525
26-
- name: Run Sysdig Scan on voting-app
26+
- name: Scan voting-app image with Sysdig CLI
2727
run: |
2828
docker run --rm \
2929
-v /var/run/docker.sock:/var/run/docker.sock \
3030
-e SECURE_API_TOKEN="${{ secrets.SECURE_API_TOKEN }}" \
3131
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
32-
scan --apiurl $SYSDIG_SECURE_URL docker://voting-app
32+
scan --apiurl "${SYSDIG_SECURE_URL}" docker://voting-app
3333
34-
- name: Run Sysdig Scan on worker
34+
- name: Scan worker image with Sysdig CLI
3535
run: |
3636
docker run --rm \
3737
-v /var/run/docker.sock:/var/run/docker.sock \
3838
-e SECURE_API_TOKEN="${{ secrets.SECURE_API_TOKEN }}" \
3939
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
40-
scan --apiurl $SYSDIG_SECURE_URL docker://worker
40+
scan --apiurl "${SYSDIG_SECURE_URL}" docker://worker
4141
42-
- name: Run Sysdig Scan on result
42+
- name: Scan result image with Sysdig CLI
4343
run: |
4444
docker run --rm \
4545
-v /var/run/docker.sock:/var/run/docker.sock \
4646
-e SECURE_API_TOKEN="${{ secrets.SECURE_API_TOKEN }}" \
4747
quay.io/sysdig/sysdig-cli-scanner:1.22.4 \
48-
scan --apiurl $SYSDIG_SECURE_URL docker://result
48+
scan --apiurl "${SYSDIG_SECURE_URL}" docker://result
4949

0 commit comments

Comments
 (0)