Skip to content

Conversation

@grahamalama
Copy link
Contributor

Description

This PR adds a POC for adding Wiz scanning to the images built in this workflow.

The workflow only scans the images for now. I still need to investigate what that command does to see if it's useful.

Currently, the secrets referenced in this workflow are set directly in the repo where we're trying this out. Eventually, we'll want to set these secrets at the organizational level and update documentation so that callers pass them to the workflow.

Related Tickets & Documents

@grahamalama grahamalama force-pushed the wiz-scanning branch 4 times, most recently from 63cf019 to 1b14e73 Compare December 2, 2025 19:09
env:
# Wiz CLI release notes: https://docs.wiz.io/release-notes/wiz-cli
WIZ_CLI_VERSION: 1.17.0
run: curl -Lo wizcli "https://downloads.wiz.io/v1/wizcli/$WIZ_CLI_VERSION/wizcli-linux-amd64" && chmod +x wizcli

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

can we do an integrity check on the downloaded file before running it?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants