diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index bcf994b..bcca235 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -9,22 +9,21 @@ jobs: - name: Scan sample image with Azure Container Scan id: container-image-scan + continue-on-error: true uses: Azure/container-scan@v0.1 with: image-name: debian:11 - - name: container-scan-to-sarif action step - id: container-scan-to-sarif-step + - name: Convert Container Scan Output to SARIF + id: container-scan-to-sarif if: ${{ always() }} uses: ./ with: converter-version: 0.2.2 input-file: ${{ steps.container-image-scan.outputs.scan-report-path }} - - run: cat "${{ steps.container-scan-to-sarif-step.outputs.sarif-report-path }}" - - name: Upload SARIF reports to GitHub Security tab uses: github/codeql-action/upload-sarif@v1 if: ${{ always() }} with: - sarif_file: ${{ steps.container-scan-to-sarif-step.outputs.sarif-report-path }} + sarif_file: ${{ steps.container-scan-to-sarif.outputs.sarif-report-path }}