Skip to content

feat(staticanalysis): trivy mannifest scan command - #41

Merged
thelonewolf1603 merged 3 commits into
mainfrom
nd/jh-scan-trivy
Jun 8, 2026
Merged

feat(staticanalysis): trivy mannifest scan command#41
thelonewolf1603 merged 3 commits into
mainfrom
nd/jh-scan-trivy

Conversation

@thelonewolf1603

Copy link
Copy Markdown
Contributor

@thelonewolf1603
thelonewolf1603 requested a review from a team June 2, 2026 06:40
@thelonewolf1603
thelonewolf1603 requested a review from vdayanand June 4, 2026 07:39
vdayanand
vdayanand previously approved these changes Jun 5, 2026

@vdayanand vdayanand left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Reviewed the diff and verified the wire contract against the backend branch (nd/trivy-manifest-be): payload fields, default tool id, status state machine, CSV Accept negotiation, and run_uuid response shape all match. No behavior-breaking bugs found. Minor non-blocking polish items: results fetch has no retry (status polling does via apiGet), the upload log line claims Project.toml is included even when the file is empty (payload gates on content, message gates on path), and --poll-interval 0 would hot-loop.

@thelonewolf1603
thelonewolf1603 merged commit 3efb2ae into main Jun 8, 2026
1 check passed
@thelonewolf1603
thelonewolf1603 deleted the nd/jh-scan-trivy branch June 8, 2026 06:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants