From 256a3756070dfb3289c6f976fcf8838c6f818b9e Mon Sep 17 00:00:00 2001 From: amanstep Date: Fri, 3 Apr 2026 10:03:39 +0530 Subject: [PATCH 1/2] fix: subscription check code github context access fixed --- Dockerfile | 2 +- action.yml | 4 +--- entrypoint.sh | 3 +++ 3 files changed, 5 insertions(+), 4 deletions(-) diff --git a/Dockerfile b/Dockerfile index dbbe008..5d745d9 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,5 +1,5 @@ FROM node:25-alpine3.23@sha256:636c5bc8fa6a7a542bc99f25367777b0b3dd0db7d1ca3959d14137a1ac80bde2 -RUN apk add --no-cache bash>5.0.16-r0 git>2.26.0-r0 curl +RUN apk add --no-cache bash>5.0.16-r0 git>2.26.0-r0 curl jq COPY entrypoint.sh /entrypoint.sh RUN chmod +x /entrypoint.sh ENTRYPOINT ["/entrypoint.sh"] diff --git a/action.yml b/action.yml index 6a6f3e2..50c0b17 100644 --- a/action.yml +++ b/action.yml @@ -44,7 +44,7 @@ inputs: runs: using: 'docker' - image: 'docker://ghcr.io/step-security/github-action-markdown-link-check:v1.0.18@sha256:aa19375b475db47b6204897e5ed6b1cca5bc51e68b9d4cfc01178771719ba5d3' #v1.0.18 + image: 'Dockerfile' args: - ${{ inputs.use-quiet-mode }} - ${{ inputs.use-verbose-mode }} @@ -55,5 +55,3 @@ runs: - ${{ inputs.base-branch }} - ${{ inputs.file-extension }} - ${{ inputs.file-path }} - env: - REPO_PRIVATE: ${{ github.event.repository.private }} diff --git a/entrypoint.sh b/entrypoint.sh index 71d5c29..4dc12bd 100644 --- a/entrypoint.sh +++ b/entrypoint.sh @@ -7,6 +7,9 @@ UPSTREAM="gaurav-nelson/github-action-markdown-link-check" ACTION_REPO="${GITHUB_ACTION_REPOSITORY:-}" DOCS_URL="https://docs.stepsecurity.io/actions/stepsecurity-maintained-actions" +# determine repo visibility from the GitHub event payload +REPO_PRIVATE=$(jq -r '.repository.private | tostring' "$GITHUB_EVENT_PATH" 2>/dev/null || echo "") + echo "" echo -e "\033[1;36mStepSecurity Maintained Action\033[0m" echo "Secure drop-in replacement for $UPSTREAM" From ce078b2c3fee78c648604bb13f3e9e82625601d1 Mon Sep 17 00:00:00 2001 From: amanstep Date: Fri, 3 Apr 2026 10:49:28 +0530 Subject: [PATCH 2/2] fix: reverted image property in action.yml to previous value --- action.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/action.yml b/action.yml index 50c0b17..080b253 100644 --- a/action.yml +++ b/action.yml @@ -44,7 +44,7 @@ inputs: runs: using: 'docker' - image: 'Dockerfile' + image: 'docker://ghcr.io/step-security/github-action-markdown-link-check:v1.0.18@sha256:aa19375b475db47b6204897e5ed6b1cca5bc51e68b9d4cfc01178771719ba5d3' #v1.0.18 args: - ${{ inputs.use-quiet-mode }} - ${{ inputs.use-verbose-mode }}