diff --git a/.github/actions/analysis/security/action.yml b/.github/actions/analysis/security/action.yml index b0d26357..247a2e0a 100644 --- a/.github/actions/analysis/security/action.yml +++ b/.github/actions/analysis/security/action.yml @@ -6,6 +6,9 @@ inputs: nvd_api_key: description: 'NVD API Key' required: false + token: + description: 'GITHUB_TOKEN with permissions to push to the container registry' + default: ${{ github.token }} runs: using: composite @@ -44,3 +47,4 @@ runs: with: sarif_file: build/reports/detekt/detekt.sarif checkout_path: ${{ github.workspace }} + token: ${{ inputs.github_token }} diff --git a/.github/workflows/deploy-main-stage.yml b/.github/workflows/deploy-main-stage.yml index 12937681..076354e5 100644 --- a/.github/workflows/deploy-main-stage.yml +++ b/.github/workflows/deploy-main-stage.yml @@ -87,6 +87,7 @@ jobs: uses: ./.github/actions/analysis/security with: nvd_api_key: ${{ secrets.NVD_API_KEY }} + token: ${{ env.CI_GITHUB_TOKEN }} functional: name: Functional Acceptance Tests 🎯 diff --git a/.github/workflows/dev-commit-stage.yml b/.github/workflows/dev-commit-stage.yml index 8df11ef2..3a41f961 100644 --- a/.github/workflows/dev-commit-stage.yml +++ b/.github/workflows/dev-commit-stage.yml @@ -115,6 +115,7 @@ jobs: uses: ./.github/actions/analysis/security with: nvd_api_key: ${{ secrets.NVD_API_KEY }} + token: ${{ env.CI_GITHUB_TOKEN }} package: name: Package and Publish 📦