Skip to content

Update dependencies #29

Update dependencies

Update dependencies #29

name: Test sarif
on:
pull_request:
branches: [main]
workflow_dispatch:
permissions:
contents: read
security-events: write
jobs:
container_scan_job:
runs-on: ubuntu-latest
permissions:
security-events: write
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # ratchet:actions/[email protected]
- name: Scan Container Image
id: orcasecurity_container_image_scan
uses: ./
with:
api_token: ${{ secrets.ORCA_SECURITY_API_TOKEN }}
project_key: "default"
image: "alpine:3"
format: "json,sarif"
output: "results/"
console_output: "table"
- uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # ratchet:actions/[email protected]
if: always()
with:
name: orca-results
path: results/
- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # ratchet:github/codeql-action/[email protected]
if: ${{ always() && steps.orcasecurity_container_image_scan.outputs.exit_code != 1 }}
with:
sarif_file: results/image.sarif