Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

🎨 Update repository #42

Merged
merged 4 commits into from
Feb 22, 2024
Merged

🎨 Update repository #42

merged 4 commits into from
Feb 22, 2024

Conversation

jacobwoffenden
Copy link
Member

@jacobwoffenden jacobwoffenden commented Feb 20, 2024

This pull request:

  • Aims to introduce some security best practice into GitHub Actions workflows
  • Updates Dependabot configuration
    • YAML formatting
  • Removes Code Formatter workflow
  • Updates Dependency Review workflow
    • Scope permissions to job
    • Add id to steps
    • Use pinned SHAs
    • YAML formatting
  • Updates LICENSE
    • 2024 🎉
  • Updates README
    • Minor tweaks

GitHub's Security hardening for GitHub Actions provides context for scoping permissions and version pinning

Update README wording
Update Dependabot ecosystems
Update GitHub Actions workflow files

Signed-off-by: Jacob Woffenden <[email protected]>
@jacobwoffenden jacobwoffenden self-assigned this Feb 20, 2024
@jacobwoffenden jacobwoffenden marked this pull request as ready for review February 22, 2024 16:51
@jacobwoffenden jacobwoffenden merged commit fe77718 into main Feb 22, 2024
3 checks passed
@jacobwoffenden jacobwoffenden deleted the feature/updates branch February 22, 2024 16:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants