From 10cae700f4702a6660baf66bdf8f673dc06f766d Mon Sep 17 00:00:00 2001 From: maziggy Date: Wed, 18 Feb 2026 17:27:37 +0100 Subject: [PATCH] Updated CI --- .github/workflows/security.yml | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index dbcd0d019..c299a5be2 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -12,6 +12,7 @@ on: - 'docker-compose*.yml' - 'requirements.txt' - 'frontend/package*.json' + - '.github/workflows/security.yml' pull_request: paths: - 'backend/**' @@ -20,6 +21,7 @@ on: - 'docker-compose*.yml' - 'requirements.txt' - 'frontend/package*.json' + - '.github/workflows/security.yml' workflow_dispatch: # Allow manual trigger @@ -73,7 +75,7 @@ jobs: run: docker build -t bambuddy:security-scan . - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.34.0 + uses: aquasecurity/trivy-action@0.33.1 with: image-ref: 'bambuddy:security-scan' format: 'sarif' @@ -89,7 +91,7 @@ jobs: category: trivy - name: Run Trivy for Dockerfile/IaC - uses: aquasecurity/trivy-action@0.34.0 + uses: aquasecurity/trivy-action@0.33.1 with: scan-type: 'config' scan-ref: '.'