Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Output Grype stderr to action logs #137

Merged
merged 1 commit into from
Dec 22, 2021

Conversation

kzantow
Copy link
Contributor

@kzantow kzantow commented Dec 22, 2021

This fixes #132 -- .grype.yaml is actually being used for everything except output format (which explicitly set and must be json in order for GitHub SARIF vulnerability reporting to work). This outputs the stderr to the logs, which will output the configuration, including the configuration file being used.

Signed-off-by: Keith Zantow <kzantow@gmail.com>
@kzantow kzantow merged commit fb92eeb into anchore:main Dec 22, 2021
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

scan-action is not using the .grype.yaml in repository root
2 participants