Drone plugins > Snyk
A plugin to scan container images for vulnerabilities using Snyk.
Example
kind: pipeline
name: default
steps:
- name: scan
image: drone-plugins/drone-snyk
pull: if-not-exists
privileged: true
settings:
dockerfile: link to dockerfile in repo
image: image name
snyk:
from_secret: snyk
fail_on_issues: false
Properties
dockerfile
stringoptionalPath to the Dockerfile to use.
Default: none
image
stringrequiredName of the image to scan.
Default: none
snyk
stringoptionalSnyk token.
Secret recommendedDefault: none
severity_threshold
stringoptionalSeverity threshold.
Default: none
fail_on_issues
booleanoptionalFail build if issues are found.
Default: false