Skip to content

Commit 829a38d

Browse files
authored
added dependancy-review.yml workflow
1 parent 0b27c9d commit 829a38d

File tree

1 file changed

+24
-0
lines changed

1 file changed

+24
-0
lines changed
Lines changed: 24 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,24 @@
1+
name: 'Dependency Review'
2+
on: [pull_request]
3+
4+
permissions:
5+
contents: read
6+
7+
jobs:
8+
dependency-review:
9+
name: '🔎 Dependency Review'
10+
runs-on: ubuntu-latest
11+
steps:
12+
13+
- name: Harden Runner
14+
uses: step-security/harden-runner@v2.10.3
15+
with:
16+
egress-policy: audit
17+
18+
- name: 'Checkout Repository'
19+
uses: actions/checkout@v4.2.2
20+
with:
21+
fetch-depth: 0
22+
23+
- name: 'Dependency Review'
24+
uses: actions/dependency-review-action@v4.5.0

0 commit comments

Comments
 (0)