diff --git a/.checks/pre-push b/.checks/pre-push index 8c1ed17..41f9ad2 100755 --- a/.checks/pre-push +++ b/.checks/pre-push @@ -28,7 +28,7 @@ trap cleanup EXIT INT TERM # Trivy check for vulnerabilities in dependencies if command -v trivy &>/dev/null; then echo -e "${GREEN}Running Trivy scan...${NC}" - trivy fs . --exit-code 1 --severity CRITICAL,HIGH,MEDIUM,LOW,UNKNOWN --no-progress \ + trivy fs --ignorefile .trivyignore . --exit-code 1 --severity CRITICAL,HIGH,MEDIUM,LOW,UNKNOWN --no-progress \ >"$LOG_DIR/trivy.log" 2>&1 || { echo -e "${RED}Trivy failed. See $LOG_DIR/trivy.log${NC}"; exit 1; } else echo -e "${YELLOW}Trivy not installed. Skipping vulnerability scan.${NC}"