We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent ab1c4b4 commit 6625142Copy full SHA for 6625142
1 file changed
.github/workflows/dependency-review.yml
@@ -0,0 +1,23 @@
1
+name: 'Dependency Review'
2
+on:
3
+ pull_request:
4
+ branches: [main, 3.0.x-fixes, 2.3.x-fixes]
5
+
6
+permissions:
7
+ contents: read
8
9
+jobs:
10
+ dependency-review:
11
+ runs-on: ubuntu-latest
12
+ permissions:
13
14
+ pull-requests: write
15
+ steps:
16
+ - name: 'Checkout Repository'
17
+ uses: actions/checkout@8ade135a41bc03ea155e62e844d188df1ea18608 # v4.1.0
18
+ - name: 'Dependency Review'
19
+ uses: actions/dependency-review-action@v3
20
+ with:
21
+ fail-on-severity: moderate
22
+ comment-summary-in-pr: always
23
+ retry-on-snapshot-warnings: true
0 commit comments