github.com/goreleaser/goreleaser@v1.25.1/.github/workflows/grype.yml (about)

     1  name: "grype"
     2  
     3  on:
     4    push:
     5      branches: ['main']
     6      tags: ['v*']
     7    pull_request:
     8  
     9  jobs:
    10    scan-source:
    11      name: scan-source
    12      runs-on: ubuntu-latest
    13  
    14      permissions:
    15        security-events: write
    16        actions: read
    17        contents: read
    18  
    19      steps:
    20      - uses: actions/checkout@9bb56186c3b09b4f86b1c65136769dd318469633 # v3
    21      - uses: anchore/scan-action@v3
    22        with:
    23          path: "."
    24          fail-build: true