diff --git a/docs/github-action.md b/docs/github-action.md index 508214e3b4..5de0b7f03a 100644 --- a/docs/github-action.md +++ b/docs/github-action.md @@ -53,7 +53,7 @@ permissions: jobs: scan-pr: - uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.6.2-beta1" + uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.7.1" ``` ### View results @@ -94,7 +94,7 @@ permissions: jobs: scan-scheduled: - uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.6.2-beta" + uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.7.1" ``` As written, the scanner will run on 12:30 pm UTC every Monday, and also on every push to the main branch. You can change the schedule by following the instructions [here](https://docs.github.com/en/actions/using-workflows/events-that-trigger-workflows#schedule). @@ -177,7 +177,7 @@ Examples ```yml jobs: scan-pr: - uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.6.2-beta1" + uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.7.1" with: scan-args: |- --lockfile=./path/to/lockfile1 @@ -189,7 +189,7 @@ jobs: ```yml jobs: scan-pr: - uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.6.2-beta1" + uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.7.1" with: scan-args: |- --recursive @@ -216,7 +216,7 @@ jobs: name: Vulnerability scanning # makes sure the extraction step is completed before running the scanner needs: extract-deps - uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.6.2-beta1" + uses: "google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml@v1.7.1" with: # Download the artifact uploaded in extract-deps step download-artifact: converted-OSV-Scanner-deps