Skip to content

Conversation

@battibatch
Copy link
Contributor

@battibatch battibatch commented Jan 29, 2026

Sorry for the noise. I used the PR to tune the CI. It is working how we want now
Trivy was failing on misconfig b/c it was trying to scan AWS resources. We want it to scan the Dockerfile, but I left that as a to-do for later.

The Vulnerability and SonarQube scan will now block PRs if there is a high or critical severity vulnerability. There is not in Setup App, so this is ready for merge.

@battibatch battibatch self-assigned this Jan 29, 2026
@battibatch battibatch merged commit cf692a6 into main Jan 29, 2026
4 checks passed
@battibatch battibatch deleted the update-ci branch January 29, 2026 16:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants