Skip to content

chore(deps): bump step-security/harden-runner from 2.11.0 to 2.11.1 #91

chore(deps): bump step-security/harden-runner from 2.11.0 to 2.11.1

chore(deps): bump step-security/harden-runner from 2.11.0 to 2.11.1 #91

Workflow file for this run

---
name: dependency
on:
# Review dependencies on pull requests to the default branch
pull_request:
branches: ["main"]
# Declare default permissions as read-only
permissions: read-all
jobs:
dependency-review:
runs-on: ubuntu-latest
permissions:
contents: read
pull-requests: write
steps:
- name: 🔒 harden runner
uses: step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf # v2.11.1
with:
egress-policy: audit
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
- name: 🔂 dependency review
uses: actions/dependency-review-action@3b139cfc5fae8b618d3eae3675e383bb1769c019 # v4.5.0
with:
fail-on-severity: "high"
deny-licenses: "AGPL-1.0, AGPL-3.0"
comment-summary-in-pr: true
warn-on-openssf-scorecard-level: 3