We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 84e8d7d commit 34deca3Copy full SHA for 34deca3
1 file changed
.github/workflows/analysis.yml
@@ -21,7 +21,8 @@ jobs:
21
trivy:
22
name: Trivy Security Scan
23
if: github.event_name != 'pull_request' || !github.event.pull_request.draft
24
- runs-on: ubuntu-24.04
+ continue-on-error: true
25
+ runs-on: ubuntu-slim
26
permissions:
27
contents: read
28
security-events: write
@@ -35,7 +36,7 @@ jobs:
35
36
output: "trivy-results.sarif"
37
ignore-unfixed: true
38
scan-type: "fs"
- scanners: "vuln,secret,config"
39
+ scanners: "vuln,secret,misconfig"
40
severity: "CRITICAL,HIGH"
41
42
- name: Upload Trivy scan results to GitHub Security tab
0 commit comments