We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 038fe68 commit 187a0f5Copy full SHA for 187a0f5
1 file changed
.github/workflows/build-deploy.yml
@@ -12,9 +12,7 @@ jobs:
12
runs-on: ubuntu-latest
13
14
steps:
15
- - uses: actions/checkout@v4
16
- with:
17
- ref: release
+ - uses: actions/checkout@v5
18
- name: Set up QEMU
19
uses: docker/setup-qemu-action@v3
20
- name: Set up Docker Buildx
@@ -35,16 +33,3 @@ jobs:
35
33
cache-to: type=gha,mode=max
36
34
- name: Image digest
37
run: echo ${{ steps.docker_build.outputs.digest }}
38
-
39
- - name: Run Trivy vulnerability scanner
40
- uses: aquasecurity/trivy-action@0.28.0
41
42
- image-ref: "pbeke/qownnotes-web-app:latest"
43
- format: "sarif"
44
- output: "trivy-results.sarif"
45
- severity: "CRITICAL,HIGH"
46
47
- - name: Upload Trivy scan results to GitHub Security tab
48
- uses: github/codeql-action/upload-sarif@v3
49
50
- sarif_file: "trivy-results.sarif"
0 commit comments