0892637164
Separate PR-specific tests from docker-build.yml into dedicated workflows that trigger via workflow_run. This creates a cleaner CI architecture where: playwright.yml: E2E tests triggered after docker-build completes security-pr.yml: Trivy binary scanning for PRs supply-chain-pr.yml: SBOM generation + Grype vulnerability scanning