What's Changed
- chore(ci): update bump-trivy workflow by @DmitriyLewen in #546
- ci: use action.yaml as single source of truth for Trivy version by @nikpivkin in #552
- ci: replace peter-evans/create-pull-request with gh CLI by @nikpivkin in #550
- test: use pinned digests for trivy-db, trivy-java-db and trivy-checks by @nikpivkin in #555
- ci: add dependabot config by @nikpivkin in #556
- chore: add zizmor config by @nikpivkin in #557
- chore(deps): bump the actions group with 5 updates by @dependabot[bot] in #558
- fix: use portable shebang in entrypoint.sh by @Hayao0819 in #545
- Fix typo in GOOGLE_APPLICATION_CREDENTIALS env var name by @patrik-csak in #547
- Upgrade Trivy action version from 0.33.1 to 0.35.0 fixes #549 by @Aditya09-cse in #548
- chore: use GitHub Actions as git commit author in bump-trivy workflow by @nikpivkin in #561
- chore(deps): Update trivy to v0.70.0 by @Argon-DevOps-Mgt in #559
- chore: update action version to v0.36.0 in examples by @nikpivkin in #563
New Contributors
- @dependabot[bot] made their first contribution in #558
- @Hayao0819 made their first contribution in #545
- @patrik-csak made their first contribution in #547
- @Aditya09-cse made their first contribution in #548
- @Argon-DevOps-Mgt made their first contribution in #559
Full Changelog: v0.35.0...v0.36.0