ci(deps): bump github/update-project-action from f980378bc179626af5b4e20ec05ec39c7f7a6f6d to 21f8a8478d7c5253e166ee62517d3a942b170fa4 #7864
Workflow file for this run
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: 'Dependency Review' | |
| on: [pull_request] | |
| permissions: | |
| contents: read | |
| jobs: | |
| dependency-review: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - name: 'Checkout Repository' | |
| uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
| - name: 'Check Config' | |
| id: check_config | |
| run: | | |
| if [ -f .github/dependency-review-config.yml ]; then | |
| echo "dependency_review_config_exists=true" >> $GITHUB_ENV | |
| else | |
| echo "dependency_review_config_exists=false" >> $GITHUB_ENV | |
| fi | |
| - name: Dependency Review (local config) | |
| if: env.dependency_review_config_exists == 'true' | |
| uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 | |
| with: | |
| config-file: './.github/dependency-review-config.yml' | |
| - name: Dependency Review | |
| if: env.dependency_review_config_exists == 'false' | |
| uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 | |
| with: | |
| fail-on-severity: high |