diff --git a/.github/actions/trivy/action.yml b/.github/actions/trivy/action.yml index a6bafe23..cc23942e 100644 --- a/.github/actions/trivy/action.yml +++ b/.github/actions/trivy/action.yml @@ -1,5 +1,5 @@ name: 'Trivy Action' -description: 'Docker Image Trivy security check combined action' +description: 'Run Trivy vulnerability scanner' inputs: image-tags: @@ -32,7 +32,8 @@ runs: output: 'trivy-${{ steps.vars.outputs.name }}-results.sarif' - name: Upload ${{ inputs.image-name }} image Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 + if: always() with: sarif_file: 'trivy-${{ steps.vars.outputs.name }}-results.sarif' category: trivy-${{ steps.vars.outputs.name }}-results