Skip to content

Friendly dependencies as default behavior #1984

Friendly dependencies as default behavior

Friendly dependencies as default behavior #1984

name: Dependency review
on: [pull_request]
permissions: read-all
jobs:
dependency-review:
name: Dependency review
runs-on: ubuntu-latest
steps:
- uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b
with:
disable-sudo: true
egress-policy: block
allowed-endpoints: >
api.deps.dev:443
api.github.com:443
api.securityscorecards.dev:443
github.com:443
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd
- uses: actions/dependency-review-action@05fe4576374b728f0c523d6a13d64c25081e0803