File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 2323
2424 - name : Get Docker metadata
2525 id : meta
26- uses : docker/metadata-action@8e5442c4ef9f78752691e2d8f8d19755c6f78e81 # v5
26+ uses : docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5
2727 with :
2828 images : ghcr.io/${{ github.repository }}
2929 tags : |
@@ -33,21 +33,21 @@ jobs:
3333 type=sha,format=long,prefix=
3434
3535 - name : Setup Docker Buildx
36- uses : docker/setup-buildx-action@c47758b77c9736f4b2ef4073d4d51994fabfe349 # v3
36+ uses : docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3
3737
3838 - name : Setup QEMU
39- uses : docker/setup-qemu-action@49b3bc8e6bdd4a60e6116a5414239cba5943d3cf # v3
39+ uses : docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # v3
4040
4141 - name : Login to GHCR
4242 if : ${{ github.event_name != 'pull_request' }}
43- uses : docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3
43+ uses : docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3
4444 with :
4545 registry : ghcr.io
4646 username : ${{ github.repository_owner }}
4747 password : ${{ secrets.GITHUB_TOKEN }}
4848
4949 - name : Build and push
50- uses : docker/build-push-action@4f58ea79222b3b9dc2c8bbdd6debcef730109a75 # v6
50+ uses : docker/build-push-action@14487ce63c7a62a4a324b0bfb37086795e31c6c1 # v6
5151 with :
5252 platforms : linux/amd64,linux/arm64
5353 push : ${{ github.event_name != 'pull_request' }}
Original file line number Diff line number Diff line change 11# Build git-secret-scanner binary
2- FROM docker.io/library/golang:1.23 .3@sha256:d56c3e08fe5b27729ee3834854ae8f7015af48fd651cd25d1e3bcf3c19830174 AS builder
2+ FROM docker.io/library/golang:1.24 .3@sha256:39d9e7d9c5d9c9e4baf0d8fff579f06d5032c0f4425cdec9e86732e8e4e374dc AS builder
33
44ARG TARGETOS
55ARG TARGETARCH
@@ -43,12 +43,12 @@ FROM ghcr.io/gitleaks/gitleaks:v8.21.2@sha256:0e99e8821643ea5b235718642b93bb3248
4343# ---
4444
4545# Retrieve trufflehog binary
46- FROM docker.io/trufflesecurity/trufflehog:v3.82.13 @sha256:9abf17c8902d58c05d82f910cf5dec05d100912482e8002d88918511fb44b6f6 AS trufflehog
46+ FROM docker.io/trufflesecurity/trufflehog:3.88.29 @sha256:6375b4dd7d045656bf78f52ac5a6e992eff344da9def96f0953cda26f791ffb7 AS trufflehog
4747
4848# ---
4949
5050# Build the final image
51- FROM docker.io/library/alpine:3.20 .3@sha256:beefdbd8a1da6d2915566fde36db9db0b524eb737fc57cd1367effd16dc0d06d
51+ FROM docker.io/library/alpine:3.21 .3@sha256:a8560b36e8b8210634f77d9f7f9efd7ffa463e380b75e2e74aff4511df3ef88c
5252
5353WORKDIR /home/git-secret-scanner
5454
You can’t perform that action at this time.
0 commit comments