diff --git a/.github/workflows/build.yaml b/.github/workflows/build.yaml index 142a991..8fcdce1 100644 --- a/.github/workflows/build.yaml +++ b/.github/workflows/build.yaml @@ -45,6 +45,7 @@ jobs: output: 'trivy-results.sarif' - name: Upload Trivy scan results to GitHub Security tab + if: github.ref == 'refs/heads/master' && github.event_name == 'push' uses: github/codeql-action/upload-sarif@v1 with: sarif_file: 'trivy-results.sarif'