Hello All,
I'm recent Grafeas user and I see so much potential in this project.
I'm trying to implement CI/CD for container scanning images, storing the CVEs in Grafeas and making binary decision using Kritis whenever the image is safe to deploy based on the policy. I'm planing on having one project, then storing all CVEs as notes and then different image versions as occurrences.
Is there a way to search or filter in Grafeas for a given image name and get all CVEs ?
How is Kritis integrating with Grafeas? Could I deploy it standalone in kubernetes cluster?
Any help would be much appreciated. Thanks in advance.
Regards,
Petko