- Update upload-artifact from v3 to v4 (deprecated) - Update codeql-action from v2 to v3 - Add continue-on-error to security scan jobs to handle Advanced Security requirement - Add wait-for-processing: false to code scanning uploads - Add exit-code: '0' to Trivy scans to prevent failures on vulnerabilities - Add proper permissions for security-events - Add conditional checks for file existence before uploading SARIF files - Update CodeQL analysis to v3 and add error handling
6.5 KiB
6.5 KiB