name: "grype" on: push: branches: ['main'] tags: ['v*'] pull_request: jobs: scan-source: name: scan-source runs-on: ubuntu-latest permissions: security-events: write actions: read contents: read steps: - uses: actions/checkout@8e5e7e5ab8b370d6c329ec480221332ada57f0ab # v3 - uses: anchore/scan-action@v3 with: path: "." fail-build: true