From 1c93c1655207390b8f5e8287965780c3a0d0d06b Mon Sep 17 00:00:00 2001 From: Chris Wright Date: Tue, 17 Oct 2023 14:28:32 +0100 Subject: [PATCH] Add tfsec working directory * There is a bug in tfsec, where it finds vulnerabilities, but just outputs 'Ignoring - change not part of the current PR' - Even though it is. This is causing the check to pass, when it should fail. * Adding `working_directory: ''` fixes the issue * https://github.com/aquasecurity/tfsec-pr-commenter-action/issues/90#issuecomment-1370985675 --- .github/workflows/continuous-integration-tfsec.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/workflows/continuous-integration-tfsec.yml b/.github/workflows/continuous-integration-tfsec.yml index 5bae724..ab65540 100644 --- a/.github/workflows/continuous-integration-tfsec.yml +++ b/.github/workflows/continuous-integration-tfsec.yml @@ -12,3 +12,4 @@ jobs: uses: aquasecurity/tfsec-pr-commenter-action@v1.3.1 with: github_token: ${{ github.token }} + working_directory: ''