Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Follow advises from @coderabbitai: - The current schedule (Thursday at 16:41 UTC) might not be frequent enough for security-critical Docker images. Consider running scans daily during off-peak hours to catch vulnerabilities sooner. - Consider adding --no-cache flag to ensure fresh builds and prevent cache poisoning attacks. Also, consider adding platform specification for better reproducibility. - Consider adding a retention period for the SARIF reports to maintain a history of security scans while managing storage efficiently.
- Loading branch information