diff --git a/.github/workflows/security-scan.yml b/.github/workflows/security-scan.yml index beff310a1..8017fee48 100644 --- a/.github/workflows/security-scan.yml +++ b/.github/workflows/security-scan.yml @@ -32,7 +32,7 @@ jobs: output: 'trivy-results.sarif' - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v3 + uses: github/codeql-action/upload-sarif@f443b600d91635bebf5b0d9ebc620189c0d6fba5 # v4 if: always() with: sarif_file: 'trivy-results.sarif' @@ -53,7 +53,7 @@ jobs: output: 'trivy-config-results.sarif' - name: Upload Trivy config scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v3 + uses: github/codeql-action/upload-sarif@f443b600d91635bebf5b0d9ebc620189c0d6fba5 # v4 if: always() with: sarif_file: 'trivy-config-results.sarif'