Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@kzantow
Copy link
Contributor

@kzantow kzantow commented Dec 22, 2021

This fixes #132 -- .grype.yaml is actually being used for everything except output format (which explicitly set and must be json in order for GitHub SARIF vulnerability reporting to work). This outputs the stderr to the logs, which will output the configuration, including the configuration file being used.

@kzantow kzantow merged commit fb92eeb into anchore:main Dec 22, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

scan-action is not using the .grype.yaml in repository root

2 participants