diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 00522ea..d8ce44a 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -18,10 +18,11 @@ jobs: allowed-endpoints: > api.deps.dev:443 api.github.com:443 + api.scorecards.dev:443 github.com:443 - name: Check out the source code uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Review dependencies - uses: actions/dependency-review-action@0fa40c3c10055986a88de3baa0d6ec17c5a894b3 # v4.2.3 + uses: actions/dependency-review-action@733dd5d4a5203f238c33806593ec0f5fc5343d8c # v4.2.4