Some checks are pending
Go Benchmark / Performance Regression Check (push) Waiting to run
Cerberus Integration / Cerberus Security Stack Integration (push) Waiting to run
Upload Coverage to Codecov / Backend Codecov Upload (push) Waiting to run
Upload Coverage to Codecov / Frontend Codecov Upload (push) Waiting to run
CodeQL - Analyze / CodeQL analysis (go) (push) Waiting to run
CodeQL - Analyze / CodeQL analysis (javascript-typescript) (push) Waiting to run
CrowdSec Integration / CrowdSec Bouncer Integration (push) Waiting to run
Docker Build, Publish & Test / build-and-push (push) Waiting to run
Docker Build, Publish & Test / Security Scan PR Image (push) Blocked by required conditions
Quality Checks / Auth Route Protection Contract (push) Waiting to run
Quality Checks / Codecov Trigger/Comment Parity Guard (push) Waiting to run
Quality Checks / Backend (Go) (push) Waiting to run
Quality Checks / Frontend (React) (push) Waiting to run
Rate Limit integration / Rate Limiting Integration (push) Waiting to run
Security Scan (PR) / Trivy Binary Scan (push) Waiting to run
Supply Chain Verification (PR) / Verify Supply Chain (push) Waiting to run
WAF integration / Coraza WAF Integration (push) Waiting to run
26 lines
962 B
YAML
Executable File
26 lines
962 B
YAML
Executable File
# Hadolint configuration for Charon Dockerfile
|
|
# See: https://github.com/hadolint/hadolint#configure
|
|
|
|
# Global switch to ignore all these rules
|
|
ignored:
|
|
# DL3008: Pin versions in apt-get install
|
|
# IGNORED: Debian Trixie is a rolling release where package versions change
|
|
# frequently and vary by architecture. Pinning exact versions creates a
|
|
# maintenance nightmare and breaks cross-architecture builds. The standard
|
|
# practice for Debian-based images is to use apt-get upgrade instead.
|
|
- DL3008
|
|
|
|
# DL3059: Multiple consecutive RUN instructions
|
|
# IGNORED: In multi-stage builds, separate RUN instructions are often
|
|
# intentional for:
|
|
# 1. Better layer caching (xx-apt installs target-arch packages separately)
|
|
# 2. Cross-compilation with xx-go requires separate setup steps
|
|
# 3. Clearer separation of concerns in complex builds
|
|
- DL3059
|
|
|
|
# Trusted registries for FROM directives
|
|
trustedRegistries:
|
|
- docker.io
|
|
- ghcr.io
|
|
- gcr.io
|