diff --git a/.github/workflows/container-scan.yml b/.github/workflows/container-scan.yml deleted file mode 100644 index fdd26124b..000000000 --- a/.github/workflows/container-scan.yml +++ /dev/null @@ -1,31 +0,0 @@ -name: Container Security Scan -on: - push: - branches: - - main - paths: - - 'docker/**' - schedule: - - cron: '*/15 * * * *' -jobs: - trivy-scan: - name: Trivy Vulnerability Scan - runs-on: ubuntu-latest - permissions: - contents: read - security-events: write - steps: - - name: Checkout - uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 - - name: Run Trivy Filesystem Scan - uses: aquasecurity/trivy-action@master - with: - scan-type: fs - scan-ref: . - format: sarif - output: trivy-results.sarif - severity: CRITICAL,HIGH - - name: Upload Results - uses: github/codeql-action/upload-sarif@v2 - with: - sarif_file: trivy-results.sarif