Skip to content

Agents and Claude #1759

Agents and Claude

Agents and Claude #1759

name: Dependency Review
on:
pull_request:
permissions:
contents: read
pull-requests: write
jobs:
dependency-review:
runs-on: ubuntu-latest
name: Review Dependencies
steps:
- name: Harden Runner
uses: step-security/harden-runner@5ef0c079ce82195b2a36a210272d6b661572d83e # v2.14.2
with:
egress-policy: block
allowed-endpoints: >
api.deps.dev:443
api.github.com:443
api.securityscorecards.dev:443
github.com:443
- name: Check out the source code
uses: actions/checkout@v6
- name: Review dependencies
uses: actions/dependency-review-action@v4.8.2
with:
comment-summary-in-pr: true
show-openssf-scorecard: true
vulnerability-check: true