5 changed files with 144 additions and 9 deletions
@ -0,0 +1,6 @@
@@ -0,0 +1,6 @@
|
||||
version: 2 |
||||
updates: |
||||
- package-ecosystem: github-actions |
||||
directory: / |
||||
schedule: |
||||
interval: daily |
||||
@ -0,0 +1,27 @@
@@ -0,0 +1,27 @@
|
||||
# Dependency Review Action |
||||
# |
||||
# This Action will scan dependency manifest files that change as part of a Pull Request, |
||||
# surfacing known-vulnerable versions of the packages declared or updated in the PR. |
||||
# Once installed, if the workflow run is marked as required, |
||||
# PRs introducing known-vulnerable packages will be blocked from merging. |
||||
# |
||||
# Source repository: https://github.com/actions/dependency-review-action |
||||
name: 'Dependency Review' |
||||
on: [pull_request] |
||||
|
||||
permissions: |
||||
contents: read |
||||
|
||||
jobs: |
||||
dependency-review: |
||||
runs-on: ubuntu-latest |
||||
steps: |
||||
- name: Harden Runner |
||||
uses: step-security/harden-runner@a4aa98b93cab29d9b1101a6143fb8bce00e2eac4 # v2.7.1 |
||||
with: |
||||
egress-policy: audit |
||||
|
||||
- name: 'Checkout Repository' |
||||
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # v3.6.0 |
||||
- name: 'Dependency Review' |
||||
uses: actions/dependency-review-action@0efb1d1d84fc9633afcdaad14c485cbbc90ef46c # v2.5.1 |
||||
@ -0,0 +1,14 @@
@@ -0,0 +1,14 @@
|
||||
repos: |
||||
- repo: https://github.com/gitleaks/gitleaks |
||||
rev: v8.16.3 |
||||
hooks: |
||||
- id: gitleaks |
||||
- repo: https://github.com/pocc/pre-commit-hooks |
||||
rev: v1.3.5 |
||||
hooks: |
||||
- id: cpplint |
||||
- repo: https://github.com/pre-commit/pre-commit-hooks |
||||
rev: v4.4.0 |
||||
hooks: |
||||
- id: end-of-file-fixer |
||||
- id: trailing-whitespace |
||||
Loading…
Reference in new issue