diff --git a/.github/workflows/artifacts.yaml b/.github/workflows/artifacts.yaml index 78937a1..6fb6e48 100644 --- a/.github/workflows/artifacts.yaml +++ b/.github/workflows/artifacts.yaml @@ -119,28 +119,3 @@ jobs: id: image-ref run: echo "value=${{ steps.image-name.outputs.value }}@${{ steps.build.outputs.digest }}" >> "$GITHUB_OUTPUT" - # Uncomment the following lines for debugging: - # - name: Upload image as artifact - # uses: actions/upload-artifact@v3 - # with: - # name: "[${{ github.job }}] OCI tarball" - # path: image.tar - - - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@fbd16365eb88e12433951383f5e99bd901fc618f # 0.12.0 - with: - input: image - format: sarif - output: trivy-results.sarif - - - name: Upload Trivy scan results as artifact - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3.1.3 - with: - name: "[${{ github.job }}] Trivy scan results" - path: trivy-results.sarif - retention-days: 5 - - - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@49abf0ba24d0b7953cb586944e918a0b92074c80 # v2.22.4 - with: - sarif_file: trivy-results.sarif diff --git a/.github/workflows/k8s.yml b/.github/workflows/k8s.yml index 046b272..cda657a 100644 --- a/.github/workflows/k8s.yml +++ b/.github/workflows/k8s.yml @@ -41,6 +41,11 @@ jobs: steps: - uses: actions/checkout@v4 + - uses: alexellis/arkade-get@master + with: + kubectl: latest + stern: latest + - name: setup-kind uses: helm/kind-action@v1.5.0 with: