From e464c64e5296beda5ac19e70dd2ec49791dcb7d4 Mon Sep 17 00:00:00 2001 From: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> Date: Thu, 20 Jul 2023 04:53:45 -0500 Subject: [PATCH 1/4] Update grype-trivy-scan-example.yaml Signed-off-by: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> --- examples/grype-trivy-scan-example.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/examples/grype-trivy-scan-example.yaml b/examples/grype-trivy-scan-example.yaml index 895f1ef..b38fad7 100644 --- a/examples/grype-trivy-scan-example.yaml +++ b/examples/grype-trivy-scan-example.yaml @@ -15,7 +15,7 @@ jobs: - uses: actions/checkout@v3 - uses: wolfi-dev/wolfi-act@main with: - packages: curl,apko,cosign,crane + packages: grype,trivy command: | set -x grype cgr.dev/chainguard/nginx From 7a361649d155989fb4cba6553722bafcde4c3c6b Mon Sep 17 00:00:00 2001 From: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> Date: Thu, 20 Jul 2023 04:54:29 -0500 Subject: [PATCH 2/4] Update README.md Signed-off-by: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index b3ec2b6..df10fc6 100644 --- a/README.md +++ b/README.md @@ -46,7 +46,7 @@ jobs: - uses: actions/checkout@v3 - uses: wolfi-dev/wolfi-act@main with: - packages: curl,apko,cosign,crane + packages: grype,trivy command: | set -x grype cgr.dev/chainguard/nginx From 66320cfcf9a5ff1b8188c79a3764472774f96941 Mon Sep 17 00:00:00 2001 From: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> Date: Thu, 20 Jul 2023 05:02:26 -0500 Subject: [PATCH 3/4] Update README.md Signed-off-by: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> --- README.md | 4 ---- 1 file changed, 4 deletions(-) diff --git a/README.md b/README.md index df10fc6..39de223 100644 --- a/README.md +++ b/README.md @@ -38,10 +38,6 @@ on: jobs: wolfi-act: runs-on: ubuntu-latest - permissions: - contents: read - packages: write - id-token: write # needed for GitHub OIDC Token steps: - uses: actions/checkout@v3 - uses: wolfi-dev/wolfi-act@main From 2f7c729f3dd977b652e5a365202aebafbfd9fa44 Mon Sep 17 00:00:00 2001 From: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> Date: Thu, 20 Jul 2023 05:02:38 -0500 Subject: [PATCH 4/4] Update grype-trivy-scan-example.yaml Signed-off-by: Josh Dolitsky <393494+jdolitsky@users.noreply.github.com> --- examples/grype-trivy-scan-example.yaml | 4 ---- 1 file changed, 4 deletions(-) diff --git a/examples/grype-trivy-scan-example.yaml b/examples/grype-trivy-scan-example.yaml index b38fad7..3d1e942 100644 --- a/examples/grype-trivy-scan-example.yaml +++ b/examples/grype-trivy-scan-example.yaml @@ -7,10 +7,6 @@ on: jobs: wolfi-act: runs-on: ubuntu-latest - permissions: - contents: read - packages: write - id-token: write # needed for GitHub OIDC Token steps: - uses: actions/checkout@v3 - uses: wolfi-dev/wolfi-act@main