Files
sec-actions/get-images-from-files/README.md
T
t.behrendt 9411465688
CD / Release (push) Successful in 13s
feat(get-images-from-files): add support for helm values (#29)
Adding support for images inside of helm value files as per helm convention.
Limitation: Default images the chart may propose are not exposed and therefore not supported, only what's specifically mentioned in the values file.

Reviewed-on: t.behrendt/trivy-actions#29
Reviewed-by: branch-buddy <branch-buddy@t00n.de>
Co-authored-by: t.behrendt <t.behrendt@t00n.de>
Co-committed-by: t.behrendt <t.behrendt@t00n.de>
2026-02-05 17:29:01 +01:00

65 lines
2.5 KiB
Markdown

# Get Images From Files Action
A reusable Gitea Action that extracts Docker image references from selected files in a repository. Duplicate refs are deduplicated.
**Note:** Only fully-qualified refs (with registry, e.g. `docker.io/library/alpine:latest`, `gcr.io/distroless/static:nonroot@sha256:...`) are included; short refs like `alpine:latest` are omitted as their use is discouraged.
## Supported file formats
| Format | How images are extracted |
| ------ | ------------------------- |
| **Dockerfile** | `FROM` lines; the image ref is the last token (handles `FROM --platform=... <image>`). |
| **Kubernetes manifests** | Lines with `image:` (e.g. under `containers` / `initContainers`); the value is taken as the image ref. |
| **Docker Compose / Compose** | Same as Kubernetes: `image:` key under services. |
| **Helmfile values** | Pairs of `repository` and `tag` (both required) at the same indent; ref is `repository:tag`. A lone `tag` without `repository` is skipped. |
Other files are supported if they use one of these patterns (e.g. `image:` or `FROM`).
## Usage
### Basic Usage
```yaml
- name: Get Images From Files
uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/get-images-from-files@0.0.1
with:
files: |
- Dockerfile
- k8s/50_deployment.yaml
- dockers/compose.yaml
- values/traefik.yaml
```
### Complete Example
```yaml
name: Get Images From Files
on: [push, pull_request]
jobs:
get-images-from-files:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- name: Get Images From Files
uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/get-images-from-files@0.0.1
with:
files: |
- Dockerfile
- k8s/50_deployment.yaml
- dockers/compose.yaml
- values/traefik.yaml
```
## Inputs
| Input | Description | Required | Default |
| --------- | ----------------------------------------- | -------- | -------- |
| `files` | Files to extract images from. Multiple files can be specified.. | Yes | |
## Outputs
| Output | Description |
| --------- | ----------------------------------------- |
| `images` | Comma separated list of extracted image references. Only fully-qualified refs (with registry, e.g. `docker.io/library/alpine:latest`, `gcr.io/distroless/static:nonroot@sha256:...`) are included; short refs like `alpine:latest` are omitted. |