diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index f3b425b..56e8170 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -75,6 +75,13 @@ jobs: COSIGN_EXPERIMENTAL: "true" TAGS: ${{ steps.meta.outputs.tags }} + scan: + name: Scan current image & report results + runs-on: "ubuntu-latest" + steps: + - name: Checkout code + uses: actions/checkout@v2 + - name: Run Trivy vulnerability scanner uses: aquasecurity/trivy-action@master with: