Skip to content

Commit 7e4e51f

Browse files
fix(ci): pin trivy-action to immutable commit SHA for supply-chain safety
Agent-Logs-Url: https://github.com/sourcefuse/loopback4-notifications/sessions/7524a630-bf35-486e-a73e-1541c2fe1e82 Co-authored-by: rohit-sourcefuse <16935898+rohit-sourcefuse@users.noreply.github.com>
1 parent 66a43c8 commit 7e4e51f

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

.github/workflows/trivy.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222
- uses: actions/checkout@v3
2323

2424
- name: Run Trivy vulnerability scanner in repo mode
25-
uses: aquasecurity/trivy-action@0.35.0
25+
uses: aquasecurity/trivy-action@57a97c7e8b8c6e9c1a7a20db8c5e540c31cf79a8 # v0.35.0
2626
with:
2727
scan-type: 'fs'
2828
scan-ref: '${{ github.workspace }}'

0 commit comments

Comments
 (0)