From 0e90fc9432b7e4de2f7080f46dfddfb0291ce88e Mon Sep 17 00:00:00 2001 From: justin-tahara Date: Thu, 11 Sep 2025 10:26:32 -0700 Subject: [PATCH] fix(security): Remove Hard Fail from Trivy --- .github/workflows/docker-build-push-backend-container-on-tag.yml | 1 - .../workflows/docker-build-push-cloud-web-container-on-tag.yml | 1 - .../docker-build-push-model-server-container-on-tag.yml | 1 - .github/workflows/docker-build-push-web-container-on-tag.yml | 1 - 4 files changed, 4 deletions(-) diff --git a/.github/workflows/docker-build-push-backend-container-on-tag.yml b/.github/workflows/docker-build-push-backend-container-on-tag.yml index 36747635d4..a7ca29ba4f 100644 --- a/.github/workflows/docker-build-push-backend-container-on-tag.yml +++ b/.github/workflows/docker-build-push-backend-container-on-tag.yml @@ -163,5 +163,4 @@ jobs: --timeout 20m \ --severity CRITICAL,HIGH \ --ignorefile /tmp/.trivyignore \ - --exit-code 1 \ docker.io/${{ env.REGISTRY_IMAGE }}:${{ github.ref_name }} diff --git a/.github/workflows/docker-build-push-cloud-web-container-on-tag.yml b/.github/workflows/docker-build-push-cloud-web-container-on-tag.yml index 6c4634a264..dbc1ad85d8 100644 --- a/.github/workflows/docker-build-push-cloud-web-container-on-tag.yml +++ b/.github/workflows/docker-build-push-cloud-web-container-on-tag.yml @@ -155,5 +155,4 @@ jobs: --skip-version-check \ --timeout 20m \ --severity CRITICAL,HIGH \ - --exit-code 1 \ docker.io/${{ env.REGISTRY_IMAGE }}:${{ github.ref_name }} diff --git a/.github/workflows/docker-build-push-model-server-container-on-tag.yml b/.github/workflows/docker-build-push-model-server-container-on-tag.yml index e47d6c7fe9..e1a1a99095 100644 --- a/.github/workflows/docker-build-push-model-server-container-on-tag.yml +++ b/.github/workflows/docker-build-push-model-server-container-on-tag.yml @@ -180,5 +180,4 @@ jobs: --skip-version-check \ --timeout 20m \ --severity CRITICAL,HIGH \ - --exit-code 1 \ docker.io/${{ env.REGISTRY_IMAGE }}:${{ github.ref_name }} diff --git a/.github/workflows/docker-build-push-web-container-on-tag.yml b/.github/workflows/docker-build-push-web-container-on-tag.yml index 302ef18889..521c8e2652 100644 --- a/.github/workflows/docker-build-push-web-container-on-tag.yml +++ b/.github/workflows/docker-build-push-web-container-on-tag.yml @@ -166,5 +166,4 @@ jobs: --skip-version-check \ --timeout 20m \ --severity CRITICAL,HIGH \ - --exit-code 1 \ docker.io/${{ env.REGISTRY_IMAGE }}:${{ github.ref_name }}