Skip to content

CHEF-33010 Added grype scan config#38

Merged
Nik08 merged 3 commits intomainfrom
nm/grype-scan-flags-inspec7
Mar 31, 2026
Merged

CHEF-33010 Added grype scan config#38
Nik08 merged 3 commits intomainfrom
nm/grype-scan-flags-inspec7

Conversation

@Nik08
Copy link
Copy Markdown
Contributor

@Nik08 Nik08 commented Mar 26, 2026

This PR updates the CI workflow configuration to enable Grype vulnerability scanning, fixes the SBOM pipeline, and renames the stub file to remove the version suffix.

  • Renamed ci-main-pull-request-stub-1.0.8.yml to ci-main-pull-request-stub.yml
  • Enabled Grype vulnerability scanning (perform-grype-scan: true)
  • Configured build failure on high/critical vulnerabilities
  • Added run-bundle-install: true to generate Gemfile.lock at runtime for the SBOM/BlackDuck SCA pipeline

Nik08 and others added 2 commits March 26, 2026 23:12
Signed-off-by: Nikita Mathur <nikita.mathur@progress.com>

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
…ile.lock at runtime

Signed-off-by: Nikita Mathur <nikita.mathur@progress.com>

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
@Nik08 Nik08 merged commit b049f3e into main Mar 31, 2026
26 of 29 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant