Skip to content

Security: Align trivy job with MicroCloud - #18661

Merged
kadinsayani merged 1 commit into
canonical:mainfrom
roosterfish:align_trivy
Jul 3, 2026
Merged

Security: Align trivy job with MicroCloud#18661
kadinsayani merged 1 commit into
canonical:mainfrom
roosterfish:align_trivy

Conversation

@roosterfish

Copy link
Copy Markdown
Contributor

@roosterfish
roosterfish requested a review from Copilot July 3, 2026 11:55
@github-actions

github-actions Bot commented Jul 3, 2026

Copy link
Copy Markdown

This PR has no domain label assigned. @canonical/lxd-maintainers please set the appropriate domain labels.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Aligns the scheduled/manual Trivy snap-scanning workflow with MicroCloud’s approach by explicitly mapping snap tracks to the corresponding Git branches and using branch-based SARIF naming/upload refs.

Changes:

  • Replaces the version list matrix with an include matrix that pairs track and branch.
  • Checks out the exact branch from the matrix and downloads the snap from the matching track.
  • Renames SARIF artifacts and upload ref to use matrix.branch instead of a derived stable-*/latest naming scheme.

Comment thread .github/workflows/security.yml
Signed-off-by: Julian Pelizäus <julian.pelizaeus@canonical.com>

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Copilot reviewed 1 out of 1 changed files in this pull request and generated no new comments.

@roosterfish
roosterfish marked this pull request as ready for review July 3, 2026 12:03

@simondeziel simondeziel left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you!

@kadinsayani kadinsayani left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks!

@kadinsayani
kadinsayani merged commit 267c411 into canonical:main Jul 3, 2026
76 checks passed
@roosterfish
roosterfish deleted the align_trivy branch July 6, 2026 06:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants