diff --git a/.github/workflows/trivy-analysis.yml b/.github/workflows/trivy-analysis.yml index d4ff62f15..a41b73403 100644 --- a/.github/workflows/trivy-analysis.yml +++ b/.github/workflows/trivy-analysis.yml @@ -27,7 +27,7 @@ jobs: docker build -t docker.io/my-organization/my-app:${{ github.sha }} . - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@062f2592684a31eb3aa050cc61e7ca1451cecd3d # master + uses: aquasecurity/trivy-action@207cd40078971bb7a078f8504c2061f908569449 # master with: image-ref: 'docker.io/my-organization/my-app:${{ github.sha }}' format: 'template'