chore(deps): bump tj-actions/verify-changed-files from 5cb319c3f99ad1844621d710b413b1727941e62b to 79a8cef5d9ef3ab541ee07ef179bd6c3c2d42ecc #1100
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# !!! Important !!! | |
# any change to this workflow will not take into effect on the same PR and only after, | |
# because of security implications from target 'pull_request_target' | |
name: security | |
on: | |
pull_request_target: # this is needed to use the API key in a PR | |
branches: | |
- main | |
permissions: | |
contents: read | |
jobs: | |
start-security-scan: | |
runs-on: ubuntu-latest | |
environment: scan-security | |
steps: | |
- run: echo start security scan # just needs a simple step to better control the follow-up jobs | |
security: | |
needs: start-security-scan | |
uses: ./.github/workflows/security-shared.yml | |
secrets: inherit |