Skip to content

Commit 0c78770

Browse files
authored
Use secrets for project-metrics-token and slack-webhook (#57)
1 parent c004956 commit 0c78770

File tree

1 file changed

+3
-6
lines changed

1 file changed

+3
-6
lines changed

.github/workflows/security-scan.yml

Lines changed: 3 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -48,16 +48,13 @@ on:
4848
required: false
4949
type: string
5050
default: ''
51+
secrets:
5152
project-metrics-token:
5253
description: 'Analytics token to log failed builds'
5354
required: false
54-
type: string
55-
default: ''
5655
slack-webhook:
5756
description: 'Slack webhook for notifications'
5857
required: false
59-
type: string
60-
default: ''
6158

6259
env:
6360
MONOREPO_PATH: .security-scanner
@@ -164,8 +161,8 @@ jobs:
164161
if: always()
165162
runs-on: ubuntu-latest
166163
env:
167-
SLACK_WEBHOOK: ${{ inputs.slack-webhook }}
168-
PROJECT_METRICS_TOKEN: ${{ inputs.project-metrics-token }}
164+
SLACK_WEBHOOK: ${{ secrets.slack-webhook }}
165+
PROJECT_METRICS_TOKEN: ${{ secrets.project-metrics-token }}
169166
REPO: ${{ inputs.repo }}
170167
steps:
171168
- name: Determine overall scan result

0 commit comments

Comments
 (0)