Skip to content

Conversation

@JLESUS
Copy link
Contributor

@JLESUS JLESUS commented Sep 11, 2025

Thank you for your contribution to Braintree.

Summary of changes

  • All apps and SDKs that interact with any PCI-related data are required to have code scanning. The following PR adds CodeQL (SAST) and dependency-review (SCA) to accomplish this goal.

Checklist

  • Added a changelog entry

Authors

@github-actions
Copy link

github-actions bot commented Sep 11, 2025

Dependency Review

The following issues were found:
  • ✅ 0 vulnerable package(s)
See the Details below.

Scanned Files

  • .github/workflows/security.yml

@JLESUS JLESUS marked this pull request as ready for review September 11, 2025 18:39
@JLESUS JLESUS requested a review from a team as a code owner September 11, 2025 18:39
Copy link

@richherrera richherrera left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!!!

@jaxdesmarais jaxdesmarais merged commit 066ae6b into main Sep 22, 2025
8 of 9 checks passed
@jaxdesmarais jaxdesmarais deleted the addSecScans branch September 22, 2025 14:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants