-
Notifications
You must be signed in to change notification settings - Fork 49
Open
Description
π Dependency Review Rule Added
π What's New?
This repository has been added to a Dependency Review rule. We value your feedback - please share your thoughts in our #security_help Slack channel!
π€ What Does This Mean?
The Dependency Review action will now run on pull requests against the default branch. This tool helps you:
- Understand dependency changes in your pull requests
- Review security impacts of dependency updates
- Make informed decisions about dependency modifications
- Analyze dependencies in your GitHub Actions workflows
π Key Points
- β¨ Informational Only: No action required from developers
- π No Workflow Changes: Your current processes remain unchanged
- π« No Blocking: Pull requests won't be blocked by this review
- π Languages: Java, JavaScript, Python, TypeScript, HCL, and Dockerfile
- π GitHub Actions Support: Includes analysis of CI/CD pipeline dependencies
- π― Scope: Only applies to PRs against the default branch
π Learn More
For detailed information about Dependency Review, check out the GitHub documentation.
π¬ Questions?
Have questions or concerns? Join the conversation in #security_help!
π This is an automated message from the Security Team
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels