From 4e1ee45c4b17d0ff38f19a683586351c9afba547 Mon Sep 17 00:00:00 2001 From: christosservos <132352106+christosservos@users.noreply.github.com> Date: Mon, 22 Jan 2024 12:38:07 +0200 Subject: [PATCH] Update trivy.yml --- .github/workflows/trivy.yml | 9 +++++---- 1 file changed, 5 insertions(+), 4 deletions(-) diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index d74a9256a..9728f5408 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -28,10 +28,11 @@ jobs: - name: Run Trivy vulnerability scanner uses: aquasecurity/trivy-action@7b7aa264d83dc58691451798b4d117d53d21edfe with: - scan-type: 'fs' - format: 'sarif' - output: 'trivy-results.sarif' - security-checks: 'vuln,config' + scan-type: 'fs' + format: 'github' + output: 'dependency-results.sbom.json' + image-ref: '.' + github-pat: ${{ secrets.GITHUB_TOKEN }} - name: upload rep