diff --git a/.github/workflows/security-scan.yml b/.github/workflows/security-scan.yml deleted file mode 100644 index c6138e1..0000000 --- a/.github/workflows/security-scan.yml +++ /dev/null @@ -1,31 +0,0 @@ -name: Security Scan - -on: - push: - branches: [ main ] - pull_request: - branches: [ main ] - schedule: - - cron: '0 0 * * 0' - -jobs: - trivy: - runs-on: ubuntu-latest - steps: - - name: Checkout code - uses: actions/checkout@v3 - - - name: Build Docker image - run: docker-compose build - - - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@master - with: - image-ref: 'masina-dock_masina-dock:latest' - format: 'sarif' - output: 'trivy-results.sarif' - - - name: Upload Trivy results - uses: github/codeql-action/upload-sarif@v2 - with: - sarif_file: 'trivy-results.sarif'