diff --git a/.github/workflows/trivy-analysis.yml b/.github/workflows/trivy-analysis.yml index d4ff62f15..99ef65661 100644 --- a/.github/workflows/trivy-analysis.yml +++ b/.github/workflows/trivy-analysis.yml @@ -27,7 +27,7 @@ jobs: docker build -t docker.io/my-organization/my-app:${{ github.sha }} . - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@062f2592684a31eb3aa050cc61e7ca1451cecd3d # master + uses: aquasecurity/trivy-action@d710430a6722f083d3b36b8339ff66b32f22ee55 # master with: image-ref: 'docker.io/my-organization/my-app:${{ github.sha }}' format: 'template'