*`TRIVY_DB_REPOSITORY`: OCI repository to retrieve Trivy Database from
*`TRIVY_JAVA_DB_REPOSITORY`: OCI repository to retrieve Trivy Java Database from
It's possible to ignore some CVE by adding a `.trivyignore` file at the root of the project (see [official documentation](https://trivy.dev/latest/docs/configuration/filtering/#trivyignore) for syntax).
In addition to a textual report in the console, this job produces the following reports, kept for one day and only available for download by users with the Developer role or higher: