chore: onboard stepsecurity and apply security best practice #128
ci.yml
on: pull_request
lint-and-test
14s
release-sbom
/
release_attach_assets
Annotations
1 error and 1 warning
|
lint-and-test
Policy store requires id-token write permission as it uses OIDC to fetch the policy from StepSecurity API. Please add "id-token: write" to your job permissions.
|
|
lint-and-test
egress-policy is set to block (default) and allowed-endpoints is empty. No outbound traffic will be allowed for job steps.
|