From 36b58301c39de2d7eaeab31a554b2843b698d8bb Mon Sep 17 00:00:00 2001 From: Jean-Paul Calderone <exarkun@twistedmatrix.com> Date: Mon, 22 Mar 2021 14:17:38 -0400 Subject: [PATCH] Just ignore vulnix errors entirely? --- ci-tools/vulnerability-scan | 1 + 1 file changed, 1 insertion(+) diff --git a/ci-tools/vulnerability-scan b/ci-tools/vulnerability-scan index 78daffe0..c252a303 100755 --- a/ci-tools/vulnerability-scan +++ b/ci-tools/vulnerability-scan @@ -34,4 +34,5 @@ fi # vulnix exits with an error status if there are vulnerabilities. We told # GitLab to allow this by setting `allow_failure` to true in the GitLab CI # config. +set +eo pipefail nix-shell -p vulnix --run 'vulnix ./scan-target/' | tee "$OUTPUT" -- GitLab