Skip to content

Commit a06b161

Browse files
committed
chore(ci): update nx and review dependencies workflow
1 parent 32f34bb commit a06b161

File tree

1 file changed

+6
-2
lines changed

1 file changed

+6
-2
lines changed

.github/workflows/dependency-review.yml

Lines changed: 6 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,12 +9,14 @@
99
name: 'Dependency Review'
1010
on: [pull_request]
1111

12-
permissions:
13-
contents: read
12+
permissions: {}
1413

1514
jobs:
1615
dependency-review:
1716
runs-on: ubuntu-latest
17+
permissions:
18+
contents: read
19+
pull-requests: write
1820
steps:
1921
- name: Harden the runner (Audit all outbound calls)
2022
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
@@ -27,3 +29,5 @@ jobs:
2729
persist-credentials: false
2830
- name: 'Dependency Review'
2931
uses: actions/dependency-review-action@da24556b548a50705dd671f47852072ea4c105d9 # v4.7.1
32+
with:
33+
comment-summary-in-pr: always

0 commit comments

Comments
 (0)