From b83cb687186c2f5f5797a66963215f54d90a73e8 Mon Sep 17 00:00:00 2001 From: Filippos Malandrakis Date: Thu, 7 Nov 2024 11:53:22 +0200 Subject: [PATCH] run scan on build as well --- .github/workflows/ci.yml | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 5f332af..b0ab44f 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -14,7 +14,13 @@ jobs: run-lint: true docker_pipeline: - uses: babylonlabs-io/.github/.github/workflows/reusable_docker_pipeline.yml@v0.7.0 + uses: babylonlabs-io/.github/.github/workflows/reusable_docker_pipeline.yml@v0.10.0 + permissions: + # required for all workflows + security-events: write + # required to fetch internal or private CodeQL packs + packages: read secrets: inherit with: publish: false + docker_scan: true