8df2386e42
CD / Release (push) Successful in 11s
Using the "latest" released version of Trivy as the default version. We always first resolve latest to an actual version to allow the cache to work properly. Reviewed-on: t.behrendt/trivy-actions#15 Reviewed-by: branch-buddy <branch-buddy@t00n.de> Co-authored-by: Timo Behrendt <t.behrendt@t00n.de> Co-committed-by: Timo Behrendt <t.behrendt@t00n.de>
42 lines
1.1 KiB
Markdown
42 lines
1.1 KiB
Markdown
# Setup DB Action
|
|
|
|
A reusable Gitea Action that sets up the Trivy vulnerability database, restoring from cache if available.
|
|
|
|
**Note:** This action only sets up the database. Trivy itself must be installed separately (e.g., using the `setup-trivy` action).
|
|
|
|
## Usage
|
|
|
|
### Basic Usage
|
|
|
|
```yaml
|
|
- name: Setup DB
|
|
uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/setup-db@0.0.1
|
|
```
|
|
|
|
### Complete Example
|
|
|
|
```yaml
|
|
name: Security Scan
|
|
on: [push, pull_request]
|
|
|
|
jobs:
|
|
security:
|
|
runs-on:
|
|
- ubuntu-latest
|
|
- linux_amd64
|
|
steps:
|
|
- uses: actions/checkout@v4
|
|
- name: Setup Trivy
|
|
uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/setup-trivy@0.0.1
|
|
- name: Setup DB
|
|
uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/setup-db@0.0.1
|
|
- name: Scan for vulnerabilities
|
|
run: trivy fs .
|
|
```
|
|
|
|
## Inputs
|
|
|
|
| Input | Description | Required | Default |
|
|
| ----------- | --------------------------------- | -------- | ---------------- |
|
|
| `cache-dir` | Path to the Trivy cache directory | No | `~/.cache/trivy` |
|