File tree Expand file tree Collapse file tree 1 file changed +9
-12
lines changed
Expand file tree Collapse file tree 1 file changed +9
-12
lines changed Original file line number Diff line number Diff line change 11name : Code Review
22on :
33 pull_request :
4- branches :
5- - main
6- - int
74permissions :
85 contents : read
9-
106jobs :
117 code-review :
12- name : Code Review
138 runs-on : ubuntu-latest
149 permissions :
1510 contents : read
16- pull-requests : write
17- id-token : write
11+ pull-requests : read
1812 steps :
1913 - name : Harden Runner
20- uses : step-security/harden-runner@6b3083af2869dc3314a0257a42f4af696cc79ba3 # v2.3.1
14+ uses : step-security/harden-runner@128a63446a954579617e875aaab7d2978154e969 # v2.4.0
2115 with :
22- egress-policy : audit
16+ disable-sudo : true
17+ egress-policy : block
18+ allowed-endpoints : >
19+ api.github.com:443
20+ int.api.stepsecurity.io:443
2321
2422 - name : Code Review
25- uses : docker://ghcr.io/step-security/code-reviewer/int:latest
26- env :
27- PAT : ${{ secrets.GITHUB_TOKEN }}
23+ uses : step-security/ai-codewise@int
24+
You can’t perform that action at this time.
0 commit comments