diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 13825e8f..51659ab1 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -42,11 +42,13 @@ jobs: sarif_file: 'trivy-results.sarif' image-scan: + permissions: + security-events: write + actions: read + contents: read strategy: matrix: config: - - image: krakend/builder - dockerfile: Dockerfile-builder - image: krakend/krakend-ce dockerfile: Dockerfile runs-on: ubuntu-latest