|
96 | 96 | # version in the comments will differ. This is also defined in
|
97 | 97 | # ci.yaml.
|
98 | 98 | set -x
|
99 |
| - cd dogfood |
| 99 | + cd dogfood/contents |
100 | 100 | DOCKER_BUILDKIT=1 docker build . --target proto -t protoc
|
101 | 101 | protoc_path=/usr/local/bin/protoc
|
102 | 102 | docker run --rm --entrypoint cat protoc /tmp/bin/protoc > $protoc_path
|
@@ -144,16 +144,6 @@ jobs:
|
144 | 144 | path:trivy-results.sarif
|
145 | 145 | retention-days:7
|
146 | 146 |
|
147 |
| -# Prisma cloud scan runs last because it fails the entire job if it |
148 |
| -# detects vulnerabilities. :| |
149 |
| - -name:Run Prisma Cloud image scan |
150 |
| -uses:PaloAltoNetworks/prisma-cloud-scan@124b48d8325c23f58a35da0f1b4d9a6b54301d05# v1.6.7 |
151 |
| -with: |
152 |
| -pcc_console_url:${{ secrets.PRISMA_CLOUD_URL }} |
153 |
| -pcc_user:${{ secrets.PRISMA_CLOUD_ACCESS_KEY }} |
154 |
| -pcc_pass:${{ secrets.PRISMA_CLOUD_SECRET_KEY }} |
155 |
| -image_name:${{ steps.build.outputs.image }} |
156 |
| - |
157 | 147 | -name:Send Slack notification on failure
|
158 | 148 | if:${{ failure() }}
|
159 | 149 | run:|
|
|