diff --git a/.github/workflows/trivy-analysis.yml b/.github/workflows/trivy-analysis.yml index 90b30f67..c0aca1b8 100644 --- a/.github/workflows/trivy-analysis.yml +++ b/.github/workflows/trivy-analysis.yml @@ -27,7 +27,7 @@ jobs: docker build -t docker.io/my-organization/my-app:${{ github.sha }} . - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@a20de5420d57c4102486cdd9578b45609c99d7eb # master + uses: aquasecurity/trivy-action@5681af892cd0f4997658e2bacc62bd0a894cf564 # master with: image-ref: 'docker.io/my-organization/my-app:${{ github.sha }}' format: 'template'