Skip to content

Commit ce61874

Browse files
committed
chore(gha): configure dependency workflow
1 parent 69fc8b1 commit ce61874

1 file changed

Lines changed: 9 additions & 0 deletions

File tree

.github/workflows/dependencies.yaml

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,7 @@ on: [pull_request]
33

44
permissions:
55
contents: read
6+
pull-requests: write
67

78
jobs:
89
dependency-review:
@@ -12,3 +13,11 @@ jobs:
1213
uses: actions/checkout@v6.0.2
1314
- name: 'Dependency Review'
1415
uses: actions/dependency-review-action@v4.9.0
16+
with:
17+
fail-on-severity: low
18+
fail-on-scopes: runtime,development,unknown
19+
license-check: false
20+
vulnerability-check: true
21+
comment-summary-in-pr: on-failure
22+
show-openssf-scorecard: false
23+
show-patched-versions: true

0 commit comments

Comments
 (0)