Skip to content

chore(deps): bump the actions group with 4 updates (#80) #215

chore(deps): bump the actions group with 4 updates (#80)

chore(deps): bump the actions group with 4 updates (#80) #215

Workflow file for this run

# SPDX-License-Identifier: MPL-2.0
name: Hypatia Security Scan
on:
push:
branches: [main, master, develop]
pull_request:
branches: [main, master]
schedule:
- cron: '0 0 * * 0'
workflow_dispatch:
permissions:
contents: read
# The reusable declares security-events: write (it uploads SARIF). A called
# workflow cannot escalate beyond the caller's grant, so `read` here makes the
# whole run a startup_failure with zero jobs and no log.
security-events: write
jobs:
scan:
uses: hyperpolymath/standards/.github/workflows/hypatia-scan-reusable.yml@81dbf2dd854b1444fd6236fa2352474383b2c2b9