From 8aba91673be42c2894d1fb24668710b5c1ce51bf Mon Sep 17 00:00:00 2001 From: Austen Stone Date: Wed, 7 Aug 2024 12:49:02 -0400 Subject: [PATCH 1/2] chore: Remove unused trivy template and update trivy workflow --- .github/workflows/trivy.yml | 2 -- 1 file changed, 2 deletions(-) diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index e3cf089d..7ac4e69a 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -37,8 +37,6 @@ jobs: uses: aquasecurity/trivy-action@0.24.0 with: image-ref: 'docker.io/my-organization/my-app:${{ github.sha }}' - format: 'template' - template: '@/contrib/sarif.tpl' output: 'trivy-results.sarif' severity: 'CRITICAL,HIGH' From 0000110267409ad61347fdc83b8542790770ffad Mon Sep 17 00:00:00 2001 From: Austen Stone Date: Wed, 7 Aug 2024 12:54:21 -0400 Subject: [PATCH 2/2] chore: Update trivy workflow to output results in SARIF format --- .github/workflows/trivy.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index 7ac4e69a..9b1bf258 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -37,6 +37,7 @@ jobs: uses: aquasecurity/trivy-action@0.24.0 with: image-ref: 'docker.io/my-organization/my-app:${{ github.sha }}' + format: 'sarif' output: 'trivy-results.sarif' severity: 'CRITICAL,HIGH'