Security: Docker Image Vulnerability Scanning
Open
- Dominant language
- No language data
- Stars
- 0
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Description
Integrate automated security scanning for Docker images published to DockerHub to ensure no critical vulnerabilities are present in build artifacts.
Acceptance Criteria
- Select and integrate a scanner (e.g., Trivy, Snyk)
- Automate scan in CI/CD pipeline
- Notify "and maybe fail" builds on high severity findings
Contributor guide
Assessment
This issue has not been assessed yet.