Right now the container is not built very frequently at all, which is bad for an MDM as it is security critical. I think it will be better to do weekly builds of the container and scan it with Trivvy for vulnerabilities. There are a lot that needs to be patched.
An example of a workflow for this can be found on one of the containers I maintain: https://github.com/TommyTran732/Synapse-Docker/tree/main/.github/workflows