...

Text file src/github.com/sigstore/timestamp-authority/.github/workflows/dependecy_review.yaml

Documentation: github.com/sigstore/timestamp-authority/.github/workflows

     1# Copyright 2022 The Sigstore Authors.
     2#
     3# Licensed under the Apache License, Version 2.0 (the "License");
     4# you may not use this file except in compliance with the License.
     5# You may obtain a copy of the License at
     6#
     7#     http://www.apache.org/licenses/LICENSE-2.0
     8#
     9# Unless required by applicable law or agreed to in writing, software
    10# distributed under the License is distributed on an "AS IS" BASIS,
    11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
    12# See the License for the specific language governing permissions and
    13# limitations under the License.
    14
    15name: 'Dependency Review'
    16on: [pull_request]
    17
    18permissions:
    19  contents: read
    20
    21jobs:
    22  dependency-review:
    23    runs-on: ubuntu-latest
    24    steps:
    25      - name: 'Checkout Repository'
    26        uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
    27      - name: 'Dependency Review'
    28        uses: actions/dependency-review-action@80f10bf419f34980065523f5efca7ebed17576aa # v4.1.0

View as plain text