obch/.github/workflows/vulnerability-scan.yml

22 lines
422 B
YAML
Raw Normal View History

2024-01-10 22:36:10 +00:00
name: Scan
on:
push:
branches:
- '**'
pull_request:
jobs:
build:
name: Build
runs-on: ubuntu-20.04
steps:
- name: Checkout code
uses: actions/checkout@v3
- name: Run Trivy vulnerability scanner
uses: aquasecurity/trivy-action@master
with:
image-ref: 'ghcr.io/bbusse/gtfso-import'
format: 'sarif'
output: 'trivy-results.sarif'