From 7f7219e9929d5d4bc55f922c3db8fae1002d2be1 Mon Sep 17 00:00:00 2001 From: Mark Collao Date: Wed, 18 Dec 2024 16:04:32 -0600 Subject: [PATCH] update security-scan.hcl --- .release/security-scan.hcl | 12 +++++++++++- 1 file changed, 11 insertions(+), 1 deletion(-) diff --git a/.release/security-scan.hcl b/.release/security-scan.hcl index 3917c269cd49..84120a73a9a1 100644 --- a/.release/security-scan.hcl +++ b/.release/security-scan.hcl @@ -9,8 +9,18 @@ container { binary { secrets = false - go_modules = false + go_modules = true osv = true oss_index = true nvd = false } + +# Triage items that are _safe_ to ignore here. Note that this list should be +# periodically cleaned up to remove items that are no longer found by the scanner. +triage { + suppress { + vulnerabilities = [ + "GO-2022-0635", // github.com/aws/aws-sdk-go@v1.55.5 + ] + } +}