Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@martincostello
Copy link
Contributor

@martincostello martincostello commented Aug 29, 2025

Bump setup-trivy to latest release so only pinned actions are used.

Unfortunately, #480 by itself wasn't enough to fix it. See aquasecurity/setup-trivy#21.

Bump setup-trivy to latest release so only pinned actions are used.
Copilot AI review requested due to automatic review settings August 29, 2025 08:38
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the setup-trivy action to version v0.2.4 to ensure only pinned actions are used, addressing the organization's policy requirement for pinned third-party actions.

  • Updates the commit hash for aquasecurity/setup-trivy from v0.2.2 to v0.2.4
  • Maintains the existing pinned action approach using commit hash instead of tag reference

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.

Copy link
Contributor

@DmitriyLewen DmitriyLewen left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks!

@DmitriyLewen DmitriyLewen merged commit b6643a2 into aquasecurity:master Aug 29, 2025
2 checks passed
@martincostello martincostello deleted the patch-1 branch August 29, 2025 08:43
@martincostello
Copy link
Contributor Author

@DmitriyLewen Are you able to push a new version containing the change please?

@DmitriyLewen
Copy link
Contributor

@simar7 can we cut v0.33.1 with this fix?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants