We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 5d247e6 commit 2ca7d0cCopy full SHA for 2ca7d0c
.github/workflows/pr-trivy.yaml
@@ -23,6 +23,6 @@ jobs:
23
severity: 'CRITICAL,HIGH'
24
25
- name: Upload Trivy scan results to GitHub Security tab
26
- uses: github/codeql-action/upload-sarif@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17
+ uses: github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
27
with:
28
sarif_file: 'trivy-results.sarif'
.github/workflows/scorecard.yaml
@@ -40,6 +40,6 @@ jobs:
40
retention-days: 5
41
42
- name: "Upload to code-scanning"
43
44
45
sarif_file: results.sarif
0 commit comments