diff --git a/.gitea/workflows/sec-checks-trivy.yml b/.gitea/workflows/sec-checks-trivy.yml index a5ff6b5..2d1be97 100644 --- a/.gitea/workflows/sec-checks-trivy.yml +++ b/.gitea/workflows/sec-checks-trivy.yml @@ -1,10 +1,6 @@ name: checks-trivy on: workflow_call: - ssh-private-key: - required: true - ssh-known-hosts: - required: true jobs: checks-trivy: @@ -12,21 +8,8 @@ jobs: runs-on: ubuntu-latest steps: - - uses: hashicorp/setup-terraform@v2 - with: - terraform_version: 1.5.7 - cli_config_credentials_token: ${{ secrets.TF_API_TOKEN }} - name: Clone repo uses: actions/checkout@v4 - - name: Setup SSH key - uses: benoitchantre/setup-ssh-authentication-action@1.0.1 - with: - private-key: ${{ secrets.ssh-private-key }} - private-key-name: id_ed25519 - known-hosts: ${{ secrets.ssh-known-hosts }} - - name: Run terraform init - shell: bash - run: terraform init - name: Run Trivy vulnerability scanner in IaC mode (LOW/MED) uses: aquasecurity/trivy-action@master with: