Skip to content

Commit 5fff51d

Browse files
committed
fix: reorder steps in Docker workflow and update image reference for Trivy scan
1 parent 7c0b3f7 commit 5fff51d

1 file changed

Lines changed: 5 additions & 3 deletions

File tree

.github/workflows/docker-build-and-scan.yaml

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -14,10 +14,12 @@ jobs:
1414
DOCKER_LOAD: true
1515
TAGS: sample-python-app:${{ github.sha }}
1616
steps:
17-
- name: Set up Docker Buildx
18-
uses: docker/setup-buildx-action@v3.12.0
17+
- name: Checkout repository
18+
uses: actions/checkout@v6
1919
- name: Set up QEMU
2020
uses: docker/setup-qemu-action@v3.7.0
21+
- name: Set up Docker Buildx
22+
uses: docker/setup-buildx-action@v3.12.0
2123
- name: Build Docker Image
2224
id: build-image
2325
uses: docker/build-push-action@v6
@@ -29,7 +31,7 @@ jobs:
2931
- name: Run Trivy vulnerability scanner
3032
uses: aquasecurity/trivy-action@0.33.1
3133
with:
32-
image-ref: ${{ steps.build-image.outputs.digest }}
34+
image-ref: ${{ env.TAGS }}
3335
format: 'table'
3436
exit-code: '1'
3537
ignore-unfixed: true

0 commit comments

Comments
 (0)