diff --git a/.github/workflows/contracts-testing.yml b/.github/workflows/contracts-testing.yml index b86aa3020..0aa124185 100644 --- a/.github/workflows/contracts-testing.yml +++ b/.github/workflows/contracts-testing.yml @@ -2,6 +2,7 @@ name: Contracts Testing on: workflow_dispatch: + merge_group: push: branches: - master @@ -13,7 +14,7 @@ permissions: # added using https://github.com/step-security/secure-workflows contents: read jobs: - test: + contracts-testing: runs-on: ubuntu-latest steps: - name: Harden Runner diff --git a/.github/workflows/dependabot-automerge.yml b/.github/workflows/dependabot-automerge.yml index fe7838c1a..1f89612f6 100644 --- a/.github/workflows/dependabot-automerge.yml +++ b/.github/workflows/dependabot-automerge.yml @@ -1,5 +1,7 @@ name: Dependabot auto-merge -on: pull_request +on: + merge_group: + pull_request: # https://docs.github.com/en/actions/security-guides/automatic-token-authentication#permissions-for-the-github_token permissions: diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index b3eae12ab..8967e929a 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -7,7 +7,9 @@ # # Source repository: https://github.com/actions/dependency-review-action name: 'Dependency Review' -on: [pull_request] +on: + merge_group: + pull_request: permissions: contents: read diff --git a/.github/workflows/scorecards.yml b/.github/workflows/scorecards.yml index dbafb4551..68e83d9dd 100644 --- a/.github/workflows/scorecards.yml +++ b/.github/workflows/scorecards.yml @@ -12,7 +12,7 @@ on: schedule: - cron: '37 13 * * 3' push: - branches: [ "master", "dev" ] + branches: [ "dev" ] # Declare default permissions as read only. permissions: read-all