jfrog / jfrog/jfrog-cli-security

On-demand binary scans don't take into account ignore rules where "Based on Artifact" is set to something other than "for any artifact"

Open
#338 1 comment 0 reactions 1 assignee View on GitHub

@hadarshjfrog is already working on this.

Since Feb 5, 2025.

bug
Dominant language
Go
Stars
13
Forks
50
Avg merge
3d 48m
Merged PRs (30d)
26

Description

Describe the bug

This has been documented in a knowledge base article for some time now, but I see nothing that says it should not officially be supported.

https://jfrog.com/help/r/xray-jf-docker-scan-watches-xx-with-ignore-rule/how-to-deal-with-it

Current behavior

See above.

Reproduction steps

See above.

Expected behavior

Basically, we want ignore rules to work with the On Demand Binary scan when marking for specific artifacts. Creates unnecessary extra work with additional ignore rules or watches and policies to properly manage the flow.

JFrog CLI version

2.48.0

Operating system type and version

Mac OS X

JFrog Artifactory version

No response

JFrog Xray version

No response

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.