Skip to content

chore(deps): bump toml from 1.1.2+spec-1.1.0 to 1.1.3+spec-1.1.0 in /… #969

chore(deps): bump toml from 1.1.2+spec-1.1.0 to 1.1.3+spec-1.1.0 in /…

chore(deps): bump toml from 1.1.2+spec-1.1.0 to 1.1.3+spec-1.1.0 in /… #969

Workflow file for this run

# SPDX-License-Identifier: MPL-2.0
name: Scorecards supply-chain security
on:
branch_protection_rule:
schedule:
- cron: '23 4 * * 1'
push:
branches: [main]
permissions: read-all
jobs:
analysis:

Check failure on line 14 in .github/workflows/scorecard.yml

View workflow run for this annotation

GitHub Actions / Scorecards supply-chain security

Invalid workflow file

The workflow is not valid. .github/workflows/scorecard.yml (Line: 14, Col: 3): Error calling workflow 'hyperpolymath/standards/.github/workflows/scorecard-reusable.yml@e9c8888769a703924cc3c0d717900960d78aea00'. The workflow is requesting 'contents: read', but is only allowed 'contents: none'.
permissions:
security-events: write
id-token: write
uses: hyperpolymath/standards/.github/workflows/scorecard-reusable.yml@e9c8888769a703924cc3c0d717900960d78aea00
secrets: inherit