18 lines
533 B
YAML
18 lines
533 B
YAML
{{- define "template.scan-syft-grype" }}
|
|
- name: scan-syft-grype
|
|
container:
|
|
image: anchore/syft:latest
|
|
command:
|
|
- sh
|
|
- -c
|
|
args:
|
|
- |
|
|
set -eu
|
|
mkdir -p /workspace/reports
|
|
syft scan dir:/workspace -o cyclonedx-json=/workspace/reports/sbom.json || true
|
|
grype sbom:/workspace/reports/sbom.json -o sarif=/workspace/reports/grype.sarif || true
|
|
volumeMounts:
|
|
- name: workspace
|
|
mountPath: /workspace
|
|
{{- end }}
|