From 0386e7b44ce6b3b745249ad3fd5fee686a92bb5a Mon Sep 17 00:00:00 2001 From: Colin Date: Fri, 23 Jan 2026 20:17:59 -0500 Subject: [PATCH] Fix YAML parsing - replace colons in echo statements --- .woodpecker.yml | 22 +++++++++++----------- 1 file changed, 11 insertions(+), 11 deletions(-) diff --git a/.woodpecker.yml b/.woodpecker.yml index 4cc0ece..474f7d3 100644 --- a/.woodpecker.yml +++ b/.woodpecker.yml @@ -81,21 +81,21 @@ steps: commands: - echo "nameserver 1.1.1.1" > /etc/resolv.conf - echo "nameserver 1.0.0.1" >> /etc/resolv.conf - - echo "=== DEBUG: Git commit ===" + - echo "=== DEBUG - Git commit ===" - git rev-parse HEAD | cat - - echo "=== DEBUG: package-lock.json exists? ===" + - echo "=== DEBUG - package-lock.json exists ===" - ls -la package-lock.json - - echo "=== DEBUG: package-lock.json hash ===" + - echo "=== DEBUG - package-lock.json hash ===" - sha256sum package-lock.json | cat - - echo "=== DEBUG: glob version in lockfile ===" + - echo "=== DEBUG - glob version in lockfile ===" - grep -A3 '"node_modules/glob"' package-lock.json | head -5 || echo "glob not found" - - echo "=== DEBUG: mime version in lockfile ===" + - echo "=== DEBUG - mime version in lockfile ===" - grep -A3 '"node_modules/mime"' package-lock.json | head -5 || echo "mime not found" - - echo "=== DEBUG: tar version in lockfile ===" + - echo "=== DEBUG - tar version in lockfile ===" - grep -A3 '"node_modules/tar"' package-lock.json | head -5 || echo "tar not found" - - echo "=== DEBUG: Check for vulnerable versions ===" + - echo "=== DEBUG - Check for vulnerable versions ===" - grep -E '10\.4\.5|6\.2\.1|7\.4\.3|1\.2\.7' package-lock.json || echo "No vulnerable versions found" - - echo "=== DEBUG: Trivy version ===" + - echo "=== DEBUG - Trivy version ===" - trivy --version | cat - echo "=== Running Trivy scan with debug ===" - trivy fs --debug --scanners vuln,misconfig --severity HIGH,CRITICAL --exit-code 0 . @@ -123,7 +123,7 @@ steps: commands: - echo "nameserver 1.1.1.1" > /etc/resolv.conf - echo "nameserver 1.0.0.1" >> /etc/resolv.conf - - echo "=== DEBUG: Verifying lockfile before build ===" + - echo "=== DEBUG - Verifying lockfile before build ===" - grep -A3 '"node_modules/glob"' package-lock.json | head -5 || echo "glob not found" - grep -E '10\.4\.5|6\.2\.1|7\.4\.3' package-lock.json || echo "No vulnerable versions in lockfile" - HOSTNAME=$(docker info --format "{{.Name}}") @@ -146,9 +146,9 @@ steps: commands: - echo "nameserver 1.1.1.1" > /etc/resolv.conf - echo "nameserver 1.0.0.1" >> /etc/resolv.conf - - echo "=== DEBUG: Inspecting image contents ===" + - echo "=== DEBUG - Inspecting image contents ===" - trivy --version | cat - - echo "=== DEBUG: Running Trivy with full output ===" + - echo "=== DEBUG - Running Trivy with full output ===" - trivy image --debug --timeout 10m --scanners vuln --severity HIGH,CRITICAL --ignore-unfixed --exit-code 1 git.nixc.us/nixius/hastebin:latest when: branch: main