Fix YAML parsing - replace colons in echo statements
ci/woodpecker/push/woodpecker Pipeline failed Details

This commit is contained in:
Colin 2026-01-23 20:17:59 -05:00
parent 2ea5e878e9
commit 0386e7b44c
Signed by: colin
SSH Key Fingerprint: SHA256:nRPCQTeMFLdGytxRQmPVK9VXY3/ePKQ5lGRyJhT5DY8
1 changed files with 11 additions and 11 deletions

View File

@ -81,21 +81,21 @@ steps:
commands: commands:
- echo "nameserver 1.1.1.1" > /etc/resolv.conf - echo "nameserver 1.1.1.1" > /etc/resolv.conf
- echo "nameserver 1.0.0.1" >> /etc/resolv.conf - echo "nameserver 1.0.0.1" >> /etc/resolv.conf
- echo "=== DEBUG: Git commit ===" - echo "=== DEBUG - Git commit ==="
- git rev-parse HEAD | cat - git rev-parse HEAD | cat
- echo "=== DEBUG: package-lock.json exists? ===" - echo "=== DEBUG - package-lock.json exists ==="
- ls -la package-lock.json - ls -la package-lock.json
- echo "=== DEBUG: package-lock.json hash ===" - echo "=== DEBUG - package-lock.json hash ==="
- sha256sum package-lock.json | cat - sha256sum package-lock.json | cat
- echo "=== DEBUG: glob version in lockfile ===" - echo "=== DEBUG - glob version in lockfile ==="
- grep -A3 '"node_modules/glob"' package-lock.json | head -5 || echo "glob not found" - grep -A3 '"node_modules/glob"' package-lock.json | head -5 || echo "glob not found"
- echo "=== DEBUG: mime version in lockfile ===" - echo "=== DEBUG - mime version in lockfile ==="
- grep -A3 '"node_modules/mime"' package-lock.json | head -5 || echo "mime not found" - grep -A3 '"node_modules/mime"' package-lock.json | head -5 || echo "mime not found"
- echo "=== DEBUG: tar version in lockfile ===" - echo "=== DEBUG - tar version in lockfile ==="
- grep -A3 '"node_modules/tar"' package-lock.json | head -5 || echo "tar not found" - grep -A3 '"node_modules/tar"' package-lock.json | head -5 || echo "tar not found"
- echo "=== DEBUG: Check for vulnerable versions ===" - echo "=== DEBUG - Check for vulnerable versions ==="
- grep -E '10\.4\.5|6\.2\.1|7\.4\.3|1\.2\.7' package-lock.json || echo "No vulnerable versions found" - grep -E '10\.4\.5|6\.2\.1|7\.4\.3|1\.2\.7' package-lock.json || echo "No vulnerable versions found"
- echo "=== DEBUG: Trivy version ===" - echo "=== DEBUG - Trivy version ==="
- trivy --version | cat - trivy --version | cat
- echo "=== Running Trivy scan with debug ===" - echo "=== Running Trivy scan with debug ==="
- trivy fs --debug --scanners vuln,misconfig --severity HIGH,CRITICAL --exit-code 0 . - trivy fs --debug --scanners vuln,misconfig --severity HIGH,CRITICAL --exit-code 0 .
@ -123,7 +123,7 @@ steps:
commands: commands:
- echo "nameserver 1.1.1.1" > /etc/resolv.conf - echo "nameserver 1.1.1.1" > /etc/resolv.conf
- echo "nameserver 1.0.0.1" >> /etc/resolv.conf - echo "nameserver 1.0.0.1" >> /etc/resolv.conf
- echo "=== DEBUG: Verifying lockfile before build ===" - echo "=== DEBUG - Verifying lockfile before build ==="
- grep -A3 '"node_modules/glob"' package-lock.json | head -5 || echo "glob not found" - grep -A3 '"node_modules/glob"' package-lock.json | head -5 || echo "glob not found"
- grep -E '10\.4\.5|6\.2\.1|7\.4\.3' package-lock.json || echo "No vulnerable versions in lockfile" - grep -E '10\.4\.5|6\.2\.1|7\.4\.3' package-lock.json || echo "No vulnerable versions in lockfile"
- HOSTNAME=$(docker info --format "{{.Name}}") - HOSTNAME=$(docker info --format "{{.Name}}")
@ -146,9 +146,9 @@ steps:
commands: commands:
- echo "nameserver 1.1.1.1" > /etc/resolv.conf - echo "nameserver 1.1.1.1" > /etc/resolv.conf
- echo "nameserver 1.0.0.1" >> /etc/resolv.conf - echo "nameserver 1.0.0.1" >> /etc/resolv.conf
- echo "=== DEBUG: Inspecting image contents ===" - echo "=== DEBUG - Inspecting image contents ==="
- trivy --version | cat - trivy --version | cat
- echo "=== DEBUG: Running Trivy with full output ===" - echo "=== DEBUG - Running Trivy with full output ==="
- trivy image --debug --timeout 10m --scanners vuln --severity HIGH,CRITICAL --ignore-unfixed --exit-code 1 git.nixc.us/nixius/hastebin:latest - trivy image --debug --timeout 10m --scanners vuln --severity HIGH,CRITICAL --ignore-unfixed --exit-code 1 git.nixc.us/nixius/hastebin:latest
when: when:
branch: main branch: main