Skip to content
This repository was archived by the owner on Dec 16, 2025. It is now read-only.

Commit 0f4c179

Browse files
authored
Update DevSkim workflow configuration
1 parent dee818f commit 0f4c179

1 file changed

Lines changed: 8 additions & 4 deletions

File tree

.github/workflows/devskim.yml

Lines changed: 8 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -13,22 +13,26 @@ on:
1313
schedule:
1414
- cron: '25 21 * * 4'
1515

16+
permissions:
17+
contents: read
18+
security-events: write
19+
1620
jobs:
1721
lint:
1822
name: DevSkim
19-
runs-on: ubuntu-20.04
23+
runs-on: ubuntu-latest
2024
permissions:
2125
actions: read
2226
contents: read
2327
security-events: write
2428
steps:
2529
- name: Checkout code
26-
uses: actions/checkout@v3
30+
uses: actions/checkout@v6
2731

2832
- name: Run DevSkim scanner
29-
uses: microsoft/DevSkim-Action@v1
33+
uses: microsoft/DevSkim-Action@4b5047945a44163b94642a1cecc0d93a3f428cc6 # v1.0.16
3034

3135
- name: Upload DevSkim scan results to GitHub Security tab
32-
uses: github/codeql-action/upload-sarif@v2
36+
uses: github/codeql-action/upload-sarif@v4
3337
with:
3438
sarif_file: devskim-results.sarif

0 commit comments

Comments
 (0)