Skip to content

Bump sigstore/cosign-installer from 3.8.2 to 3.9.0 #173

Bump sigstore/cosign-installer from 3.8.2 to 3.9.0

Bump sigstore/cosign-installer from 3.8.2 to 3.9.0 #173

Workflow file for this run

name: Trivy Scan
on:
pull_request:
jobs:
trivy-code-security-scan:
runs-on: ubuntu-latest
name: Trivy
steps:
- name: Checkout
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
- name: Security Scan
uses: aquasecurity/trivy-action@6c175e9c4083a92bbca2f9724c8a5e33bc2d97a5 # 0.30.0
with:
scan-type: 'fs'
scanners: vuln,secret
exit-code: 1
ignore-unfixed: true