Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

infra: harden GitHub workflows #598

Closed

Conversation

Bananeweizen
Copy link
Collaborator

See https://github.com/step-security/secure-repo#1-automatically-set-minimum-github_token-permissions for details. Dependabot will be able to upgrade the pinned dependencies and will use the same format (including version comments).

See https://github.com/step-security/secure-repo#1-automatically-set-minimum-github_token-permissions
for details. Dependabot will be able to upgrade the pinned dependencies
and will use the same format (including version comments).
@rnveach
Copy link
Member

rnveach commented Oct 17, 2023

@romani @nrmancuso ping for main repo's GH workflows

@rnveach
Copy link
Member

rnveach commented Oct 17, 2023

Nevermind, missed your comment completely.

@Bananeweizen
Copy link
Collaborator Author

recreated as #611 instead

@Bananeweizen Bananeweizen deleted the harden_workflows branch December 18, 2023 13:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants