Skip to content

feat: refine action for enhanced security #112

feat: refine action for enhanced security

feat: refine action for enhanced security #112

on:
workflow_dispatch:
pull_request:
push:
branches:
- main
jobs:
scan-codebase:
runs-on: ubuntu-24.04
permissions:
contents: read
name: Analyze a Docker image
steps:
- name: Get the action.yml from the current branch
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
with:
sparse-checkout: action.yml
sparse-checkout-cone-mode: false
persist-credentials: false
- uses: ./
with:
pipelines: "analyze_docker_image"
input-urls:
https://github.com/aboutcode-org/scancode.io-tutorial/releases/download/sample-images/30-alpine-nickolashkraus-staticbox-latest.tar