We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 3c5fb0b commit 5f047dcCopy full SHA for 5f047dc
.github/workflows/pr-trivy.yaml
@@ -23,6 +23,6 @@ jobs:
23
severity: 'CRITICAL,HIGH'
24
25
- name: Upload Trivy scan results to GitHub Security tab
26
- uses: github/codeql-action/upload-sarif@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.8
+ uses: github/codeql-action/upload-sarif@df559355d593797519d70b90fc8edd5db049e7a2 # v3.29.9
27
with:
28
sarif_file: 'trivy-results.sarif'
.github/workflows/scorecard.yaml
@@ -40,6 +40,6 @@ jobs:
40
retention-days: 5
41
42
- name: "Upload to code-scanning"
43
44
45
sarif_file: results.sarif
0 commit comments