fix: add an output containing a pass/fail result #419
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Closes #412
This adds a little basic logic to provide an output that gives the real result of the scan (findings or not) in a simple pass/fail format.
It still honours the exit code requested via the exit-code input in terms of pass/fail of the trivy command whilst providing the ability to take conditional actions later in a workflow (upload sarif, prepare reports in other formats using convert, uploading to another system etc)
Example from a workflow in a private repo using this branch:
Debug step in my workflow