trivoallan/Regis Security Analysis

Analyze a container image with regis and optionally post results to a PR.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
image-urlContainer image URL to analyze.yes
authRegistry credentials as `registry=user:pass`.no""
playbookURL or path to a custom playbook YAML.no""
report-urlURL to the hosted report (used as a link in the PR comment).no""
github-tokenToken for posting PR comments. Requires the pull-requests: write permission. no${{ github.token }}
pr-urlPR URL to post the comment on (auto-detected in pull_request context).no""
upload-artifactWhether to upload the report as a workflow artifact.notrue
artifact-nameName for the uploaded artifact.noregis-security-report
versionregis Docker image version tag.nolatest
namedescription
report-pathAbsolute path to the report directory on the runner.