diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index f3fc2cf..18077ba 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -185,18 +185,18 @@ jobs: if-no-files-found: error retention-days: 1 - - name: Run Trivy vulnerability scanner (arm64) - uses: aquasecurity/trivy-action@0.35.0 - env: - TRIVY_PLATFORM: linux/arm64 - with: - image-ref: 'ghcr.io/netbootxyz/netbootxyz@${{ steps.build.outputs.digest }}' - version: 'v0.69.3' - format: 'table' - exit-code: ${{ needs.setup.outputs.is_pr == 'true' && '1' || '0' }} - ignore-unfixed: true - vuln-type: 'os,library' - severity: 'CRITICAL,HIGH' +# - name: Run Trivy vulnerability scanner (arm64) +# uses: aquasecurity/trivy-action@0.35.0 +# env: +# TRIVY_PLATFORM: linux/arm64 +# with: +# image-ref: 'ghcr.io/netbootxyz/netbootxyz@${{ steps.build.outputs.digest }}' +# version: 'v0.69.3' +# format: 'table' +# exit-code: ${{ needs.setup.outputs.is_pr == 'true' && '1' || '0' }} +# ignore-unfixed: true +# vuln-type: 'os,library' +# severity: 'CRITICAL,HIGH' manifest: needs: [setup, build-amd64, build-arm64]