We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 7c0b3f7 commit 5fff51dCopy full SHA for 5fff51d
1 file changed
.github/workflows/docker-build-and-scan.yaml
@@ -14,10 +14,12 @@ jobs:
14
DOCKER_LOAD: true
15
TAGS: sample-python-app:${{ github.sha }}
16
steps:
17
- - name: Set up Docker Buildx
18
- uses: docker/setup-buildx-action@v3.12.0
+ - name: Checkout repository
+ uses: actions/checkout@v6
19
- name: Set up QEMU
20
uses: docker/setup-qemu-action@v3.7.0
21
+ - name: Set up Docker Buildx
22
+ uses: docker/setup-buildx-action@v3.12.0
23
- name: Build Docker Image
24
id: build-image
25
uses: docker/build-push-action@v6
@@ -29,7 +31,7 @@ jobs:
29
31
- name: Run Trivy vulnerability scanner
30
32
uses: aquasecurity/trivy-action@0.33.1
33
with:
- image-ref: ${{ steps.build-image.outputs.digest }}
34
+ image-ref: ${{ env.TAGS }}
35
format: 'table'
36
exit-code: '1'
37
ignore-unfixed: true
0 commit comments