Skip to content

chore(ci): Remove trivy - Spark-Operator#2894

Merged
google-oss-prow[bot] merged 1 commit intokubeflow:masterfrom
sameerdattav:remove-trivy
Mar 25, 2026
Merged

chore(ci): Remove trivy - Spark-Operator#2894
google-oss-prow[bot] merged 1 commit intokubeflow:masterfrom
sameerdattav:remove-trivy

Conversation

@sameerdattav
Copy link
Copy Markdown
Contributor

Removing trivy action - as instructed by @andreyvelich following kubeflow/katib#2644

Signed-off-by: Surya Sameer Datta Vaddadi <f20220373@goa.bits-pilani.ac.in>
Copilot AI review requested due to automatic review settings March 25, 2026 21:11
@google-oss-prow google-oss-prow Bot requested review from ImpSy and nabuskey March 25, 2026 21:11
@github-actions
Copy link
Copy Markdown

🎉 Welcome to the Kubeflow Spark Operator! 🎉

Thanks for opening your first PR! We're happy to have you as part of our community 🚀

Here's what happens next:

Join the community:

Feel free to ask questions in the comments if you need any help or clarification!
Thanks again for contributing to Kubeflow! 🙏

Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Removes the GitHub Actions workflow that runs scheduled/manual Trivy image vulnerability scans and uploads SARIF results to the GitHub Security tab, aligning this repo’s CI configuration with the referenced upstream instruction.

Changes:

  • Deleted the trivy-image-scanning GitHub Actions workflow.
  • Removed scheduled (cron) and manual (workflow_dispatch) Trivy scanning execution.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Copy link
Copy Markdown
Member

@andreyvelich andreyvelich left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks @sameerdattav!
/lgtm
/approve

@google-oss-prow
Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: andreyvelich

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@google-oss-prow google-oss-prow Bot merged commit c27af68 into kubeflow:master Mar 25, 2026
17 of 18 checks passed
@andreyvelich
Copy link
Copy Markdown
Member

/cherry-pick release-2.1
/cherry-pick release-2.2

@google-oss-robot
Copy link
Copy Markdown

@andreyvelich: #2894 failed to apply on top of branch "release-2.1":

Applying: Remove trivy - Spark-Operator
Using index info to reconstruct a base tree...
M	.github/workflows/trivy-image-scanning.yaml
Falling back to patching base and 3-way merge...
CONFLICT (modify/delete): .github/workflows/trivy-image-scanning.yaml deleted in Remove trivy - Spark-Operator and modified in HEAD. Version HEAD of .github/workflows/trivy-image-scanning.yaml left in tree.
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
hint: When you have resolved this problem, run "git am --continue".
hint: If you prefer to skip this patch, run "git am --skip" instead.
hint: To restore the original branch and stop patching, run "git am --abort".
hint: Disable this message with "git config set advice.mergeConflict false"
Patch failed at 0001 Remove trivy - Spark-Operator

Details

In response to this:

/cherry-pick release-2.1
/cherry-pick release-2.2

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

@andreyvelich
Copy link
Copy Markdown
Member

/cherry-pick release-2.4
/cherry-pick release-2.5

@google-oss-robot
Copy link
Copy Markdown

@andreyvelich: #2894 failed to apply on top of branch "release-2.4":

Applying: Remove trivy - Spark-Operator
Using index info to reconstruct a base tree...
M	.github/workflows/trivy-image-scanning.yaml
Falling back to patching base and 3-way merge...
CONFLICT (modify/delete): .github/workflows/trivy-image-scanning.yaml deleted in Remove trivy - Spark-Operator and modified in HEAD. Version HEAD of .github/workflows/trivy-image-scanning.yaml left in tree.
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch=diff' to see the failed patch
hint: When you have resolved this problem, run "git am --continue".
hint: If you prefer to skip this patch, run "git am --skip" instead.
hint: To restore the original branch and stop patching, run "git am --abort".
hint: Disable this message with "git config set advice.mergeConflict false"
Patch failed at 0001 Remove trivy - Spark-Operator

Details

In response to this:

/cherry-pick release-2.4
/cherry-pick release-2.5

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

@andreyvelich
Copy link
Copy Markdown
Member

@sameerdattav Please could you manually cherry-pick this commit to the following branches:
release-2.1
release-2.2
release-2.3
release-2.4
release-2.5

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants