We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 69fc8b1 commit ce61874Copy full SHA for ce61874
1 file changed
.github/workflows/dependencies.yaml
@@ -3,6 +3,7 @@ on: [pull_request]
3
4
permissions:
5
contents: read
6
+ pull-requests: write
7
8
jobs:
9
dependency-review:
@@ -12,3 +13,11 @@ jobs:
12
13
uses: actions/checkout@v6.0.2
14
- name: 'Dependency Review'
15
uses: actions/dependency-review-action@v4.9.0
16
+ with:
17
+ fail-on-severity: low
18
+ fail-on-scopes: runtime,development,unknown
19
+ license-check: false
20
+ vulnerability-check: true
21
+ comment-summary-in-pr: on-failure
22
+ show-openssf-scorecard: false
23
+ show-patched-versions: true
0 commit comments