Container scanning
This turns on GitLab container scanning for the builds before we push a tag to the registry. The ultimate/paid version will surface the vulnerabilities within the merge request but instead have just set it to fail if there's a medium or high vulnerability.
Edited by Iain Walmsley