From 87ee275fff41589eaf28744009a7abcec3785bde Mon Sep 17 00:00:00 2001 From: Gonzalo Diaz Date: Thu, 26 Sep 2024 13:10:35 -0300 Subject: [PATCH] [CONFIG] [Github Actions] Docker flow, GITHUB_TOKEN env added. https://github.com/aquasecurity/trivy-action/issues/389#issuecomment-2371607148 --- .github/workflows/docker-image.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/docker-image.yml b/.github/workflows/docker-image.yml index 58c65ec4..2f9c6338 100644 --- a/.github/workflows/docker-image.yml +++ b/.github/workflows/docker-image.yml @@ -189,6 +189,8 @@ jobs: uses: github/codeql-action/upload-sarif@v3 with: sarif_file: 'trivy-results.sarif' + env: + ACTIONS_RUNTIME_TOKEN: ${{ secrets.GITHUB_TOKEN }} report: name: "Trivy (report)" @@ -211,3 +213,5 @@ jobs: with: image-ref: ${{ env.IMAGE_NAME }}:${{ github.sha }} format: 'table' + env: + ACTIONS_RUNTIME_TOKEN: ${{ secrets.GITHUB_TOKEN }}