Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
51 commits
Select commit Hold shift + click to select a range
a27780d
chore(chart-deps): update trivy-operator to version 0.33.2
svcAPLBot Jun 19, 2026
157f44b
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 22, 2026
31d87e4
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 22, 2026
c929745
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 22, 2026
a33b60f
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 22, 2026
09c00e4
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 23, 2026
b5dd309
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 23, 2026
7d5df5f
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 23, 2026
30be17b
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 24, 2026
8b60251
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 24, 2026
b6db9aa
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 25, 2026
17b7182
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 26, 2026
db03007
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 26, 2026
a2c4295
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 26, 2026
c7e4d9d
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 29, 2026
0efea90
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 29, 2026
6c8b7cf
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 29, 2026
4a8944f
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 29, 2026
6e446cd
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 29, 2026
a419c0f
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 29, 2026
fccbb93
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jun 30, 2026
1651032
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
e3b6d7a
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
3f26995
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
ee204d6
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
bd59ec3
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
63919b2
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
8409bd0
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
d12f440
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
3789bd9
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
8acbdde
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 3, 2026
0440650
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 6, 2026
947c801
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 6, 2026
5813206
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 6, 2026
a8cb97a
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 6, 2026
6165560
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 7, 2026
df4ba45
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 7, 2026
695c0b4
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 9, 2026
12c8e64
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 10, 2026
e5364e7
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 13, 2026
faf5c3e
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 15, 2026
87047c3
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 16, 2026
c1a86cb
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 20, 2026
e4d789c
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 21, 2026
4306b12
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 21, 2026
95e0222
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 22, 2026
07d6055
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 27, 2026
dc8dde1
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 28, 2026
4d93df6
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 28, 2026
420c6b9
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 28, 2026
94c2047
Merge branch 'main' into ci-update-trivy-operator-to-0.33.2
svcAPLBot Jul 28, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion apps.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -208,7 +208,7 @@ appsInfo:
integration: App Platform uses Sealed Secrets to provide a secure way to store Kubernetes secrets in Git repositories. Sealed Secrets can be used to store secrets in the values repository.
trivy:
title: Trivy Operator
appVersion: 0.30.1
appVersion: 0.31.2
repo: https://github.com/aquasecurity/trivy-operator
maintainers: Aqua Security
relatedLinks:
Expand Down
2 changes: 1 addition & 1 deletion chart/chart-index/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -112,5 +112,5 @@ dependencies:
version: 1.12.0
repository: https://cdfoundation.github.io/tekton-helm-chart/
- name: trivy-operator
version: 0.32.1
version: 0.33.2
repository: https://aquasecurity.github.io/helm-charts/
4 changes: 2 additions & 2 deletions charts/trivy-operator/Chart.yaml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
apiVersion: v2
appVersion: 0.30.1
appVersion: 0.31.2
description: Keeps security report resources updated
keywords:
- aquasecurity
Expand All @@ -9,4 +9,4 @@ name: trivy-operator
sources:
- https://github.com/aquasecurity/trivy-operator
type: application
version: 0.32.1
version: 0.33.2
6 changes: 3 additions & 3 deletions charts/trivy-operator/README.md
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
# trivy-operator

![Version: 0.32.1](https://img.shields.io/badge/Version-0.32.1-informational?style=flat-square) ![Type: application](https://img.shields.io/badge/Type-application-informational?style=flat-square) ![AppVersion: 0.30.1](https://img.shields.io/badge/AppVersion-0.30.1-informational?style=flat-square)
![Version: 0.33.2](https://img.shields.io/badge/Version-0.33.2-informational?style=flat-square) ![Type: application](https://img.shields.io/badge/Type-application-informational?style=flat-square) ![AppVersion: 0.31.2](https://img.shields.io/badge/AppVersion-0.31.2-informational?style=flat-square)

Keeps security report resources updated

Expand Down Expand Up @@ -153,7 +153,7 @@ Keeps security report resources updated
| trivy.image.pullPolicy | string | `"IfNotPresent"` | pullPolicy is the imge pull policy used for trivy image , valid values are (Always, Never, IfNotPresent) |
| trivy.image.registry | string | `"mirror.gcr.io"` | registry of the Trivy image |
| trivy.image.repository | string | `"aquasec/trivy"` | repository of the Trivy image |
| trivy.image.tag | string | `"0.69.3"` | tag version of the Trivy image |
| trivy.image.tag | string | `"0.71.1"` | tag version of the Trivy image |
| trivy.imageScanCacheDir | string | `"/tmp/trivy/.cache"` | imageScanCacheDir the flag to set custom path for trivy image scan `cache-dir` parameter. Only applicable in image scan mode. |
| trivy.includeDevDeps | bool | `false` | includeDevDeps include development dependencies in the report (supported: npm, yarn) (default: false) note: this flag is only applicable when trivy.command is set to filesystem |
| trivy.insecureRegistries | object | `{}` | The registry to which insecure connections are allowed. There can be multiple registries with different keys. |
Expand Down Expand Up @@ -190,7 +190,7 @@ Keeps security report resources updated
| trivy.storageClassEnabled | bool | `true` | whether to use a storage class for trivy server or emptydir (one mey want to use ephemeral storage) |
| trivy.storageClassName | string | `""` | storageClassName is the name of the storage class to be used for trivy server PVC. If empty, tries to find default storage class |
| trivy.storageSize | string | `"5Gi"` | storageSize is the size of the trivy server PVC |
| trivy.supportedConfigAuditKinds | string | `"Workload,Service,Role,ClusterRole,NetworkPolicy,Ingress,LimitRange,ResourceQuota"` | The Flag is the list of supported kinds separated by comma delimiter to be scanned by the config audit scanner |
| trivy.supportedConfigAuditKinds | string | `"Workload,Service,Role,ClusterRole,NetworkPolicy,Ingress,LimitRange,ResourceQuota,PersistentVolume,PersistentVolumeClaim"` | The Flag is the list of supported kinds separated by comma delimiter to be scanned by the config audit scanner |
| trivy.timeout | string | `"5m0s"` | timeout is the duration to wait for scan completion. |
| trivy.useBuiltinRegoPolicies | string | `"false"` | The Flag to enable the usage of builtin rego policies by default, these policies are downloaded by default from mirror.gcr.io/aquasec/trivy-checks |
| trivy.useEmbeddedRegoPolicies | string | `"true"` | To enable the usage of embedded rego policies, set the flag useEmbeddedRegoPolicies. This should serve as a fallback for air-gapped environments. When useEmbeddedRegoPolicies is set to true, useBuiltinRegoPolicies should be set to false. |
Expand Down
2 changes: 2 additions & 0 deletions charts/trivy-operator/generated/role.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -10,6 +10,8 @@ rules:
- configmaps
- limitranges
- nodes
- persistentvolumeclaims
- persistentvolumes
- pods
- replicationcontrollers
- resourcequotas
Expand Down
2 changes: 1 addition & 1 deletion charts/trivy-operator/templates/specs/eks-cis-1.4.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ metadata:
labels:
app.kubernetes.io/name: trivy-operator
app.kubernetes.io/instance: trivy-operator
app.kubernetes.io/version: 0.30.1
app.kubernetes.io/version: 0.31.2
app.kubernetes.io/managed-by: kubectl
spec:
cron: {{ .Values.compliance.cron | quote }}
Expand Down
2 changes: 1 addition & 1 deletion charts/trivy-operator/templates/specs/k8s-cis-1.23.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ metadata:
labels:
app.kubernetes.io/name: trivy-operator
app.kubernetes.io/instance: trivy-operator
app.kubernetes.io/version: 0.30.1
app.kubernetes.io/version: 0.31.2
app.kubernetes.io/managed-by: kubectl
spec:
cron: {{ .Values.compliance.cron | quote }}
Expand Down
2 changes: 1 addition & 1 deletion charts/trivy-operator/templates/specs/k8s-nsa-1.0.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ metadata:
labels:
app.kubernetes.io/name: trivy-operator
app.kubernetes.io/instance: trivy-operator
app.kubernetes.io/version: 0.30.1
app.kubernetes.io/version: 0.31.2
app.kubernetes.io/managed-by: kubectl
spec:
cron: {{ .Values.compliance.cron | quote}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ metadata:
labels:
app.kubernetes.io/name: trivy-operator
app.kubernetes.io/instance: trivy-operator
app.kubernetes.io/version: 0.30.1
app.kubernetes.io/version: 0.31.2
app.kubernetes.io/managed-by: kubectl
spec:
cron: {{ .Values.compliance.cron | quote}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ metadata:
labels:
app.kubernetes.io/name: trivy-operator
app.kubernetes.io/instance: trivy-operator
app.kubernetes.io/version: 0.30.1
app.kubernetes.io/version: 0.31.2
app.kubernetes.io/managed-by: kubectl
spec:
cron: {{ .Values.compliance.cron | quote}}
Expand Down
2 changes: 1 addition & 1 deletion charts/trivy-operator/templates/specs/rke2-cis-1.24.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ metadata:
labels:
app.kubernetes.io/name: trivy-operator
app.kubernetes.io/instance: trivy-operator
app.kubernetes.io/version: 0.30.1
app.kubernetes.io/version: 0.31.2
app.kubernetes.io/managed-by: kubectl
spec:
cron: {{ .Values.compliance.cron | quote}}
Expand Down
4 changes: 2 additions & 2 deletions charts/trivy-operator/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -360,7 +360,7 @@ trivy:
# -- repository of the Trivy image
repository: aquasec/trivy
# -- tag version of the Trivy image
tag: 0.69.3
tag: 0.71.1
# -- imagePullSecret is the secret name to be used when pulling trivy image from private registries example : reg-secret
# It is the user responsibility to create the secret for the private registry in `trivy-operator` namespace
imagePullSecret: ~
Expand Down Expand Up @@ -581,7 +581,7 @@ trivy:

# -- The Flag is the list of supported kinds separated by comma delimiter to be scanned by the config audit scanner
#
supportedConfigAuditKinds: "Workload,Service,Role,ClusterRole,NetworkPolicy,Ingress,LimitRange,ResourceQuota"
supportedConfigAuditKinds: "Workload,Service,Role,ClusterRole,NetworkPolicy,Ingress,LimitRange,ResourceQuota,PersistentVolume,PersistentVolumeClaim"

# -- command. One of `image`, `filesystem` or `rootfs` scanning, depending on the target type required for the scan.
# For 'filesystem' and `rootfs` scanning, ensure that the `trivyOperator.scanJobPodTemplateContainerSecurityContext` is configured
Expand Down
Loading