Commit f3a9676
fix(ci): repair security-scan job (valid Trivy action + SARIF permissions)
The job pinned aquasecurity/trivy-action@0.28.0, a tag that no longer
resolves, so the job failed at startup. Bump to 0.35.0 and grant the
security-events: write permission the SARIF upload step needs.
Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>1 parent fbefda0 commit f3a9676
1 file changed
Lines changed: 4 additions & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
179 | 179 | | |
180 | 180 | | |
181 | 181 | | |
| 182 | + | |
| 183 | + | |
| 184 | + | |
182 | 185 | | |
183 | 186 | | |
184 | 187 | | |
185 | 188 | | |
186 | 189 | | |
187 | | - | |
| 190 | + | |
188 | 191 | | |
189 | 192 | | |
190 | 193 | | |
| |||
0 commit comments