Files
Charon/.hadolint.yaml
akanealw eec8c28fb3
Some checks are pending
Go Benchmark / Performance Regression Check (push) Waiting to run
Cerberus Integration / Cerberus Security Stack Integration (push) Waiting to run
Upload Coverage to Codecov / Backend Codecov Upload (push) Waiting to run
Upload Coverage to Codecov / Frontend Codecov Upload (push) Waiting to run
CodeQL - Analyze / CodeQL analysis (go) (push) Waiting to run
CodeQL - Analyze / CodeQL analysis (javascript-typescript) (push) Waiting to run
CrowdSec Integration / CrowdSec Bouncer Integration (push) Waiting to run
Docker Build, Publish & Test / build-and-push (push) Waiting to run
Docker Build, Publish & Test / Security Scan PR Image (push) Blocked by required conditions
Quality Checks / Auth Route Protection Contract (push) Waiting to run
Quality Checks / Codecov Trigger/Comment Parity Guard (push) Waiting to run
Quality Checks / Backend (Go) (push) Waiting to run
Quality Checks / Frontend (React) (push) Waiting to run
Rate Limit integration / Rate Limiting Integration (push) Waiting to run
Security Scan (PR) / Trivy Binary Scan (push) Waiting to run
Supply Chain Verification (PR) / Verify Supply Chain (push) Waiting to run
WAF integration / Coraza WAF Integration (push) Waiting to run
changed perms
2026-04-22 18:19:14 +00:00

26 lines
962 B
YAML
Executable File

# Hadolint configuration for Charon Dockerfile
# See: https://github.com/hadolint/hadolint#configure
# Global switch to ignore all these rules
ignored:
# DL3008: Pin versions in apt-get install
# IGNORED: Debian Trixie is a rolling release where package versions change
# frequently and vary by architecture. Pinning exact versions creates a
# maintenance nightmare and breaks cross-architecture builds. The standard
# practice for Debian-based images is to use apt-get upgrade instead.
- DL3008
# DL3059: Multiple consecutive RUN instructions
# IGNORED: In multi-stage builds, separate RUN instructions are often
# intentional for:
# 1. Better layer caching (xx-apt installs target-arch packages separately)
# 2. Cross-compilation with xx-go requires separate setup steps
# 3. Clearer separation of concerns in complex builds
- DL3059
# Trusted registries for FROM directives
trustedRegistries:
- docker.io
- ghcr.io
- gcr.io