Skip to content

feat(.github): Add GitHub workflows from hve-core #1

feat(.github): Add GitHub workflows from hve-core

feat(.github): Add GitHub workflows from hve-core #1

name: Dependency Review
on:
pull_request:
branches: [main, develop]
workflow_call:
permissions:
contents: read
pull-requests: write
jobs:
dependency-review:
name: Review Dependencies
runs-on: ubuntu-latest
permissions:
contents: read
pull-requests: write
steps:
- name: Checkout code
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v4.2.2
with:
persist-credentials: false
- name: Dependency Review
uses: actions/dependency-review-action@3c4e3dcb1aa7874d2c16be7d79418e9b7efd6261 # v4.3.4
with:
fail-on-severity: moderate
comment-summary-in-pr: always