Skip to content

Commit d24a07e

Browse files
committed
docs(changelog): drop stale osv-scanner mention (CI uses Trivy via vendor manifest)
Signed-off-by: Sebastian Mendel <sebastian.mendel@netresearch.de>
1 parent 966690a commit d24a07e

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

CHANGELOG.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ deployment of [GLPI](https://glpi-project.org/) built around a purpose-built
4141
hardening posture.
4242
- **Supply-chain & CI**: daily multi-arch rebuild to absorb base-image CVE
4343
fixes, keyless Cosign signatures, in-image SBOMs, SLSA build provenance,
44-
daily Trivy and osv-scanner scanning, OpenSSF Scorecard, and a lint suite
44+
daily Trivy vulnerability scanning, OpenSSF Scorecard, and a lint suite
4545
(hadolint, shellcheck, yamllint, actionlint) plus bats and smoke tests.
4646
- `docker-bake.hcl` and a tag-triggered `release.yml` that builds, signs and
4747
publishes the canonical tag set (`<version>`, `<major.minor>`, `<major>`,

0 commit comments

Comments
 (0)