Current Trivy workflow only runs for Docker Images, but it should also be extended for code & dependencies scan for better security. Additional Context: #1208