File tree Expand file tree Collapse file tree 7 files changed +16
-16
lines changed Expand file tree Collapse file tree 7 files changed +16
-16
lines changed Original file line number Diff line number Diff line change 4040 builder : [buildah, docker]
4141 steps :
4242 - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
43- - uses : actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
43+ - uses : actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v5
4444 with :
4545 go-version-file : go.mod
4646 check-latest : true
Original file line number Diff line number Diff line change 1919 steps :
2020 - name : Checkout repository
2121 uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
22- - uses : actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
22+ - uses : actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v5
2323 with :
2424 go-version-file : go.mod
2525 check-latest : true
@@ -29,11 +29,11 @@ jobs:
2929 sudo apt-get update
3030 sudo apt-get install -y libze1 libze-dev
3131 - name : Initialize CodeQL
32- uses : github/codeql-action/init@2d92b76c45b91eb80fc44c74ce3fce0ee94e8f9d # v3
32+ uses : github/codeql-action/init@f1f6e5f6af878fb37288ce1c627459e94dbf7d01 # v3
3333 with :
3434 languages : ' go'
3535
3636 - name : Perform CodeQL Analysis
37- uses : github/codeql-action/analyze@2d92b76c45b91eb80fc44c74ce3fce0ee94e8f9d # v3
37+ uses : github/codeql-action/analyze@f1f6e5f6af878fb37288ce1c627459e94dbf7d01 # v3
3838 with :
3939 category : " /language:go"
Original file line number Diff line number Diff line change 5858 - intel-idxd-config-initcontainer
5959 steps :
6060 - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
61- - uses : actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
61+ - uses : actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v5
6262 with :
6363 go-version-file : go.mod
6464 check-latest : true
6969 run : |
7070 ORG=${{ inputs.registry }} TAG=${{ inputs.image_tag }} make ${IMAGE_NAME} BUILDER=docker
7171 - name : Trivy scan for image
72- uses : aquasecurity/trivy-action@f9424c10c36e288d5fa79bd3dfd1aeb2d6eae808 # 0.33.0
72+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
7373 with :
7474 scan-type : image
7575 image-ref : ${{ inputs.registry }}/${{ matrix.image }}:${{ inputs.image_tag }}
Original file line number Diff line number Diff line change 2626 results_format : sarif
2727 publish_results : true
2828 - name : " Upload results to security"
29- uses : github/codeql-action/upload-sarif@2d92b76c45b91eb80fc44c74ce3fce0ee94e8f9d # v3
29+ uses : github/codeql-action/upload-sarif@f1f6e5f6af878fb37288ce1c627459e94dbf7d01 # v3
3030 with :
3131 sarif_file : results.sarif
Original file line number Diff line number Diff line change 3232 - name : Checkout
3333 uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
3434 - name : Run Trivy in config mode for deployments
35- uses : aquasecurity/trivy-action@f9424c10c36e288d5fa79bd3dfd1aeb2d6eae808 # 0.33.0
35+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
3636 with :
3737 scan-type : config
3838 scan-ref : deployments/
5050 - name : Checkout
5151 uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
5252 - name : Run Trivy in config mode for dockerfiles
53- uses : aquasecurity/trivy-action@f9424c10c36e288d5fa79bd3dfd1aeb2d6eae808 # 0.33.0
53+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
5454 with :
5555 scan-type : config
5656 scan-ref : build/docker/
6464 - name : Checkout
6565 uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
6666 - name : Run Trivy in fs mode
67- uses : aquasecurity/trivy-action@f9424c10c36e288d5fa79bd3dfd1aeb2d6eae808 # 0.33.0
67+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
6868 with :
6969 scan-type : fs
7070 scan-ref : .
8181 - name : Checkout
8282 uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
8383 - name : Run Trivy in fs mode
84- uses : aquasecurity/trivy-action@f9424c10c36e288d5fa79bd3dfd1aeb2d6eae808 # 0.33.0
84+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
8585 with :
8686 scan-type : fs
8787 scan-ref : .
Original file line number Diff line number Diff line change 3535 runs-on : ubuntu-24.04
3636 steps :
3737 - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
38- - uses : actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
38+ - uses : actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v5
3939 with :
4040 go-version-file : go.mod
4141 check-latest : true
5353 runs-on : ubuntu-24.04
5454 steps :
5555 - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
56- - uses : actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
56+ - uses : actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v5
5757 with :
5858 go-version-file : go.mod
5959 check-latest : true
8282 - 1.34.x
8383 steps :
8484 - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4
85- - uses : actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
85+ - uses : actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v5
8686 with :
8787 go-version-file : go.mod
8888 check-latest : true
Original file line number Diff line number Diff line change 2222 - name : Run Trivy in fs mode
2323 # Don't fail in case of vulnerabilities, report them in the next step
2424 continue-on-error : true
25- uses : aquasecurity/trivy-action@f9424c10c36e288d5fa79bd3dfd1aeb2d6eae808 # 0.33.0
25+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
2626 with :
2727 scan-type : fs
2828 scan-ref : .
3131 format : sarif
3232 output : trivy-report.sarif
3333 - name : Upload sarif report to GitHub Security tab
34- uses : github/codeql-action/upload-sarif@2d92b76c45b91eb80fc44c74ce3fce0ee94e8f9d # v3
34+ uses : github/codeql-action/upload-sarif@f1f6e5f6af878fb37288ce1c627459e94dbf7d01 # v3
3535 with :
3636 sarif_file : trivy-report.sarif
You can’t perform that action at this time.
0 commit comments