diff --git a/bodleian/infrastructure-repository.tf b/bodleian/infrastructure-repository.tf index 31988f6..ab134ea 100644 --- a/bodleian/infrastructure-repository.tf +++ b/bodleian/infrastructure-repository.tf @@ -1,3 +1,5 @@ +#trivy:ignore:avd-gcp-0066 +#trivy:ignore:avd-git-0001 module "bodleian_project" { # tflint-ignore: terraform_module_pinned_source #checkov:skip=CKV_TF_2:No version for the module ref. diff --git a/scripts/check.sh b/scripts/check.sh index e486a82..75f2758 100755 --- a/scripts/check.sh +++ b/scripts/check.sh @@ -15,5 +15,6 @@ tflint --init tflint -f compact --disable-rule=terraform_module_pinned_source --disable-rule=terraform_required_providers terraform validate -no-color terraform fmt -check -recursive +trivy config . checkov --quiet -d . diff --git a/terraform-examples/terraform-state-bucket.tf b/terraform-examples/terraform-state-bucket.tf index 27cd1e7..424873b 100644 --- a/terraform-examples/terraform-state-bucket.tf +++ b/terraform-examples/terraform-state-bucket.tf @@ -1,3 +1,4 @@ +#trivy:ignore:avd-gcp-0066 resource "google_storage_bucket" "state_bucket" { #checkov:skip=CKV_GCP_62:Logging deactivated for now project = data.google_project.project.project_id