Introduce workflows for receiving comments on a PR #1357
1 configuration not found
Warning: Code scanning may not have found all the alerts introduced by this pull request, because 1 configuration present on refs/heads/master
was not found:
Actions workflow (openssf-scorecard.yml
)
- ❓
supply-chain/branch-protection
New alerts in code changed by this pull request
Security Alerts:
- 2 high
- 8 medium
See annotations below for details.
Annotations
Check failure on line 1 in .github/workflows/comment-pr.yml
Code scanning / Scorecard
Token-Permissions High
Check warning on line 23 in .github/workflows/comment-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check warning on line 29 in .github/workflows/comment-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check warning on line 40 in .github/workflows/comment-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check warning on line 52 in .github/workflows/comment-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check warning on line 40 in .github/workflows/pitest-update-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check failure on line 1 in .github/workflows/receive-pr.yml
Code scanning / Scorecard
Token-Permissions High
Check warning on line 22 in .github/workflows/receive-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check warning on line 37 in .github/workflows/receive-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium
Check warning on line 52 in .github/workflows/receive-pr.yml
Code scanning / Scorecard
Pinned-Dependencies Medium