Skip to content

Conversation

@blink-so
Copy link
Contributor

@blink-so blink-so bot commented Sep 4, 2025

This PR adds comprehensive documentation for integrating JFrog Xray vulnerability scanning with Coder workspaces.

Overview

The new guide covers the recommended Terraform module approach for displaying vulnerability scan results directly in workspace metadata, replacing the need for external services in most cases.

Key Features Documented

  • Setup and Configuration: Complete setup instructions for JFrog Xray integration
  • Module Usage: Examples using the new jfrog-xray module from the Coder registry
  • Advanced Scenarios: Multiple images, custom configuration options
  • Troubleshooting: Common issues and debugging steps
  • Security Considerations: Token management and network security

Benefits of New Approach

  • Works with all workspace types (not just Kubernetes)
  • No additional service deployment required
  • Real-time vulnerability information during workspace provisioning
  • Native integration with Terraform templates

Related Work

The documentation is ready for review and complements the new Terraform module for a complete Xray integration solution.

blink-so bot and others added 5 commits September 4, 2025 07:13
Adds comprehensive documentation for integrating JFrog Xray vulnerability
scanning with Coder workspaces using the new Terraform module approach.

The guide covers:
- Setup and configuration
- Module usage examples
- Troubleshooting
- Security considerations
- Multiple image scenarios

Resolves #12838

Co-authored-by: matifali <10648092+matifali@users.noreply.github.com>
- Change bold text to proper h4 headings for error messages
- Add blank lines around lists to satisfy MD032 rule

Fixes markdownlint violations in the JFrog Xray integration guide.
Runs markdown-table-formatter to fix table formatting issues
identified by the docs CI check.
Removes the reference to vulnerability-display.png that doesn't exist,
fixing the linkspector failure reported by github-actions bot.
Removes all mentions of the deprecated coder-xray utility and focuses
the documentation solely on the Terraform module approach as requested.

Co-authored-by: matifali <10648092+matifali@users.noreply.github.com>
@github-actions github-actions bot added the stale This issue is like stale bread. label Sep 12, 2025
@github-actions github-actions bot closed this Sep 15, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

stale This issue is like stale bread.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants