saso
|
192fd78ca2
|
feat(sbom): scan sbom attestation in the rekor record (#2699)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-09-15 20:16:39 +03:00 |
|
Teppei Fukuda
|
2de903ca35
|
refactor: add a new interface for initializing analyzers (#2835)
Signed-off-by: knqyf263 <knqyf263@gmail.com>
|
2022-09-12 11:46:53 +03:00 |
|
Teppei Fukuda
|
6b4ddaaef2
|
feat: cache merged layers
igned-off-by: knqyf263 <knqyf263@gmail.com>
|
2022-09-06 11:04:00 +03:00 |
|
jerbob92
|
5f0bf1445a
|
feat: move file patterns to a global level to be able to use it on any analyzer (#2539)
|
2022-09-01 11:01:57 +03:00 |
|
Jose Donizetti
|
2f2952c658
|
fix: fix k8s rbac filter (#2765)
|
2022-08-23 11:56:06 +03:00 |
|
Moulick Aggarwal
|
ddffb1b451
|
fix(cli): secret scanning perf link fix (#2607)
|
2022-08-15 16:15:22 +03:00 |
|
Liam Galvin
|
b259b25ce4
|
feat: Add AWS Cloud scanning (#2493)
* feat: Added AWS Cloud scanning
Co-authored-by: Owen Rumney <owen.rumney@aquasec.com>
|
2022-08-11 14:59:32 +01:00 |
|
Owen Rumney
|
01123854b4
|
feat: Support passing value overrides for configuration checks (#2679)
|
2022-08-08 18:22:58 +03:00 |
|
Shubham Palriwala
|
30c9f90bf8
|
feat(repo): add support for branch, commit, & tag (#2494)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-07-17 13:54:28 +03:00 |
|
Owen Rumney
|
a3a66df007
|
feat: Add support for license scanning (#2418)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
Co-authored-by: DmitriyLewen <dmitriy.lewen@smartforce.io>
|
2022-07-13 22:36:41 +03:00 |
|
Teppei Fukuda
|
5b7e0a858d
|
refactor: move from urfave/cli to spf13/cobra (#2458)
Co-authored-by: afdesk <work@afdesk.com>
Co-authored-by: DmitriyLewen <91113035+DmitriyLewen@users.noreply.github.com>
|
2022-07-09 19:40:31 +03:00 |
|
Masahiro331
|
5b821d3b13
|
feat(sbom): add cyclonedx sbom scan (#2203)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-07-03 20:03:21 +03:00 |
|
Jonathan Pulsifer
|
f64534651a
|
fix(cli): fix version string in docs link when secret scanning is enabled (#2422)
Signed-off-by: Jonathan Pulsifer <jonathan@pulsifer.ca>
|
2022-06-30 16:58:40 +03:00 |
|
Teppei Fukuda
|
4a197efcb2
|
BREAKING(sbom): change 'trivy sbom' to scan SBOM (#2408)
|
2022-06-27 16:42:41 +03:00 |
|
Liam Galvin
|
094db23a03
|
refactor: Fix fanal import paths and remove dotfiles
|
2022-06-20 09:43:33 +01:00 |
|
Josh Soref
|
d6d0a60d16
|
chore: fix spelling errors (#2352)
|
2022-06-20 09:56:13 +03:00 |
|
AndreyLevchenko
|
3e3c119555
|
feat(lang): add dependency origin graph (#1970)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-06-16 10:34:26 +03:00 |
|
Teppei Fukuda
|
7cecade3a1
|
feat: add support for WASM modules (#2195)
|
2022-06-15 15:23:00 +03:00 |
|
Teppei Fukuda
|
a02c06bafd
|
feat(secret): show recommendation for slow scanning (#2051)
Co-authored-by: afdesk <work@afdesk.com>
|
2022-06-15 12:39:32 +03:00 |
|
Jose Donizetti
|
d8b59efea9
|
refactor: extract commands Runner interface (#2147)
|
2022-06-06 11:04:24 +03:00 |
|
DmitriyLewen
|
b7ec642572
|
feat(db): added insecure skip tls verify to download trivy db (#2140)
Co-authored-by: Teppei Fukuda <knqyf263@gmail.com>
|
2022-05-26 14:54:39 +03:00 |
|
Jose Donizetti
|
023e09e3f3
|
refactor: k8s (#2116)
* refactor: add pkg/k8s
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* refactor: extract scanner
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* refactor: extract scanVulns
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* refactor: extract scanMisconfigs
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* refactor: extract filter
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* refactor: improve k8s/run.go
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* fix(k8s): code improvements
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
* chore: go mod tidy
Signed-off-by: Jose Donizetti <jdbjunior@gmail.com>
|
2022-05-15 08:07:31 -03:00 |
|
Teppei Fukuda
|
b3759f54fa
|
refactor: export useful APIs (#2108)
Co-authored-by: Jose Donizetti <jdbjunior@gmail.com>
|
2022-05-13 22:09:20 +03:00 |
|
Jose Donizetti
|
029dd76c30
|
feat: add k8s subcommand (#2065)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-05-12 21:11:29 +03:00 |
|
Liam Galvin
|
5a58e41476
|
feat(misconf): Added fs.FS based scanning via latest defsec (#2084)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-05-10 15:05:00 +03:00 |
|
DmitriyLewen
|
c1b4b5be16
|
fix(misconf): added to skip conf files if their scanning is not enabled (#2066)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-04-30 17:12:23 +03:00 |
|
Oran Moshai
|
b6baa65ff2
|
refactor(fs): scanner options (#2050)
To allow Trivy plugins create InitializeScanner signature scanner options need to be public
Co-authored-by: oranmoshai <oran.moshai@aquasec.com>
|
2022-04-26 16:05:27 +03:00 |
|
Teppei Fukuda
|
5f047f97db
|
feat: add secret scanning (#1901)
Co-authored-by: VaismanLior <97836016+VaismanLior@users.noreply.github.com>
Co-authored-by: AMF <work@afdesk.com>
|
2022-04-22 17:08:18 +03:00 |
|
Sashi Kumar
|
02105678ed
|
feat(db): Add dbRepository flag to get advisory database from OCI registry (#1873)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-03-31 16:09:01 +03:00 |
|
Teppei Fukuda
|
88ebc07504
|
chore: bump up Go to 1.18 (#1862)
|
2022-03-21 16:38:54 +02:00 |
|
afdesk
|
d6418cf0de
|
feat(filesystem): scan in client/server mode (#1829)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-03-21 15:51:18 +02:00 |
|
Teppei Fukuda
|
11f4f81123
|
refactor: move result structs under types (#1696)
|
2022-02-09 19:31:12 +02:00 |
|
Teppei Fukuda
|
ef8a1afcdb
|
fix(repo): --no-progress suppresses git output (#1669)
|
2022-02-03 09:02:39 +02:00 |
|
Taufik Mulyana
|
cabd18daae
|
feat(cache): redis TLS support (#1297)
|
2022-01-18 15:16:00 +02:00 |
|
DmitriyLewen
|
478d279919
|
feat: added insecure tls skip to scan git repo (#1528)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-01-14 11:25:45 +02:00 |
|
Yuval Goldberg
|
33bd41b40f
|
Supress git clone output (#1590)
|
2022-01-14 08:59:49 +02:00 |
|
afdesk
|
8da20c8c92
|
BREAKING: migrate the sarif template to Go code (#1437)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2022-01-12 08:49:47 +02:00 |
|
Teppei Fukuda
|
e65274e0ef
|
BREAKING: Trivy DB from GHCR (#1539)
|
2022-01-06 20:08:40 +02:00 |
|
Teppei Fukuda
|
59957d4c6b
|
feat(scan): support --offline-scan option (#1511)
|
2021-12-24 12:20:21 +02:00 |
|
Teppei Fukuda
|
1c9ccb5e03
|
feat(command): add rootfs command (#1271)
|
2021-10-04 21:03:34 +03:00 |
|
Teppei Fukuda
|
da905108b4
|
feat: improve --skip-dirs and --skip-files (#1249)
|
2021-10-03 13:08:09 +03:00 |
|
Fabian Windheuser
|
9027dc3252
|
Disable library analyzer for OS only scan type (#1191)
|
2021-09-29 11:54:46 +03:00 |
|
Ankush K
|
dbc7a83e8c
|
feat(python): add packaging detector and respective hook (#1223)
Co-authored-by: knqyf263 <knqyf263@gmail.com>
|
2021-09-13 20:59:11 +03:00 |
|
Teppei Fukuda
|
9e08bd44fb
|
docs: add misconfiguration (#1101)
Co-authored-by: Itay Shakury <itay@itaysk.com>
|
2021-07-12 03:14:17 +03:00 |
|
Teppei Fukuda
|
d9883e4442
|
fix(config): rename include-successes with include-non-failures (#1107)
|
2021-07-11 16:55:13 +03:00 |
|
Teppei Fukuda
|
e6f7e556e8
|
feat(config): support --trace (#1106)
|
2021-07-11 16:07:30 +03:00 |
|
Teppei Fukuda
|
a0e5c3a2e2
|
feat: support config scanning (#931)
|
2021-07-09 08:18:53 +03:00 |
|
Teppei Fukuda
|
e362843705
|
BREAKING: migrate to a new JSON schema (#782)
* feat: introduce a new JSON schema
* test: update
* chore(mod): update fanal
* refactor: add a comment
* test(report): fix
* refactor(writer): add omitempty
* refactor: replace url
* test(scanner): fix
|
2021-06-08 18:03:24 +03:00 |
|
Teppei Fukuda
|
1b66b77f69
|
feat: prepare for config scanning (#1005)
* temp: disable config scanning
|
2021-05-20 09:05:36 +03:00 |
|
Teppei Fukuda
|
1385fa4190
|
feat: show help message when the context's deadline passes (#955)
|
2021-04-27 17:13:01 +03:00 |
|