From d2974c91d0826a2d6fc33a91e1e04facca7e2061 Mon Sep 17 00:00:00 2001 From: Dmitry Salakhov Date: Tue, 9 Feb 2021 11:33:20 +1300 Subject: [PATCH] use official gosec image, it's ready to publish sarif --- .github/workflows/security-scan.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/security-scan.yml b/.github/workflows/security-scan.yml index 29c77da58..63c66583e 100644 --- a/.github/workflows/security-scan.yml +++ b/.github/workflows/security-scan.yml @@ -62,7 +62,7 @@ jobs: - name: Checkout Source uses: actions/checkout@v2 - name: Run Gosec Security Scanner - uses: portainer/gosec@fix-sarif-format + uses: securego/gosec@master with: # we let the report trigger content trigger a failure using the GitHub Security features. args: "-no-fail -fmt sarif -out results.sarif ./..."