Skip to content

Commit ffce041

Browse files
Merge pull request #1 from reactive-firewall/dev
Added Updates and Automation
2 parents 9cc5aa4 + 2d60b3a commit ffce041

File tree

2 files changed

+28
-2
lines changed

2 files changed

+28
-2
lines changed

.github/dependabot.yml

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
# To get started with Dependabot version updates, you'll need to specify which
2+
# package ecosystems to update and where the package manifests are located.
3+
# Please see the documentation for all configuration options:
4+
# https://docs.github.com/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file
5+
6+
version: 2
7+
updates:
8+
- package-ecosystem: "github-actions" # See documentation for possible values
9+
directory: "/" # Location of action.yml
10+
target-branch: "main"
11+
rebase-strategy: "disabled"
12+
# Labels on pull requests for version updates only
13+
labels:
14+
- "GitHub"
15+
- "Testing"
16+
assignees:
17+
- "reactive-firewall"
18+
commit-message:
19+
prefix: "[UPDATE] "
20+
include: "scope"
21+
schedule:
22+
interval: "weekly"
23+
day: "tuesday"

README.md

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@ Bandit is a tool designed to find common security issues in Python code. This ac
1111
To run a bandit scan include a step like this:
1212

1313
```yaml
14-
uses: shundor/bandit-action@v1
14+
uses: reactive-firewall/bandit-action@v2
1515
with:
1616
path: "."
1717
level: high
@@ -66,4 +66,7 @@ The action will create an artifact containing the sarif output.
6666

6767
## Credits
6868

69-
- :bow: This action is based on [bandit-action](https://github.com/mdegis/bandit-action) by [Melih Değiş](https://github.com/mdegis/).
69+
- :bow: This action is based on [bandit-action](https://github.com/mdegis/bandit-action) by [Melih Değiş](https://github.com/mdegis/).
70+
- :bow: This action is _also_ based on [python-bandit-scan](https://github.com/shundor/python-bandit-scan) by [shundor](https://github.com/shundor).
71+
- :bow: This fork includes fixes proposed by [Kenta Nakase](https://github.com/parroty) and [Thiago Grisolfi](https://github.com/Grisolfi) ... 🎉 but automated by @dependabot
72+

0 commit comments

Comments
 (0)