diff --git a/.github/workflows/snyk-security-scan.yml b/.github/workflows/snyk-security-scan.yml index 9611de3669..e4758f40be 100644 --- a/.github/workflows/snyk-security-scan.yml +++ b/.github/workflows/snyk-security-scan.yml @@ -4,7 +4,7 @@ on: workflow_call: jobs: - snyk-python-security-scan: + snyk-security-scan: name: Snyk security scan runs-on: ubuntu-latest # see this PR regarding the permissions needed for this workflow @@ -40,3 +40,7 @@ jobs: # yamllint enable rule:line-length env: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} + # TODO: setup snyk container monitor & snyk container test + # will require building the docker image and storing it in the local docker registry.. + # will need to refactor .github/workflows/build-engine-docker-image-and-publish-to-dockerhub.yml + # to be a composable action instead of a workflow diff --git a/engine/Dockerfile b/engine/Dockerfile index f2f134cd9b..dcc2696cdf 100644 --- a/engine/Dockerfile +++ b/engine/Dockerfile @@ -1,4 +1,4 @@ -FROM python:3.12.3-alpine3.18 AS base +FROM python:3.12.3-alpine3.20 AS base ARG TARGETPLATFORM # Create a group and user to run an app