The README states:
- Display issues with their severity as a SARIF Report in the GitHub Workspace after a scan completes.
I was hoping that meant the violation report would get uploaded and imported to the GH Security Advisories, but I can only download the artifact from the link in the workflow. Is this the intended result?