chore(deps): bump elgohr/Publish-Docker-Github-Action from d0321869e187cfd3124343ea2b39b1db31f89685 to 977fe38375c65e8e3b01d226d72c1f7d488e45dc #1232
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# !!! Important !!! | |
# any change to this workflow will not take into effect on the same PR and only after, | |
# because of security implications from target 'pull_request_target' | |
name: security | |
on: | |
pull_request_target: # this is needed to use the API key in a PR | |
branches: | |
- main | |
permissions: | |
contents: read | |
jobs: | |
start-security-scan: | |
runs-on: ubuntu-latest | |
environment: scan-security | |
steps: | |
- run: echo start security scan # just needs a simple step to better control the follow-up jobs | |
security: | |
needs: start-security-scan | |
uses: ./.github/workflows/security-shared.yml | |
secrets: inherit |