We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 1c3890b commit 0a66006Copy full SHA for 0a66006
.github/workflows/trivy-analysis.yml
@@ -22,15 +22,14 @@ jobs:
22
uses: aquasecurity/trivy-action@d710430a6722f083d3b36b8339ff66b32f22ee55
23
with:
24
image-ref: quay.io/keycloak/${{ matrix.container}}:nightly
25
- format: template
26
- template: '@/contrib/sarif.tpl'
+ format: sarif
27
output: trivy-results.sarif
28
severity: MEDIUM,CRITICAL,HIGH
29
ignore-unfixed: true
30
- security-checks: vuln
31
timeout: 15m
32
33
- name: Upload Trivy scan results to GitHub Security tab
34
uses: github/codeql-action/upload-sarif@v3
35
36
sarif_file: trivy-results.sarif
+ category: ${{ matrix.container}}
0 commit comments