diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index 012aa10a..a1254532 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -25,7 +25,7 @@ jobs: ignore-unfixed: true format: 'sarif' output: 'trivy-results.sarif' - scanners: 'vuln, secret, config' + scanners: 'vuln,secret,misconfig' severity: 'CRITICAL,HIGH' - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@v3