Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Added the scorecard github action #5947

Open
wants to merge 2 commits into
base: main
Choose a base branch
from

Conversation

harshitasao
Copy link

@harshitasao harshitasao commented Jul 3, 2024

Provide a description of what has been changed
PR to add the Scorecard GitHub Action

Checklist

Fixes #5913

@harshitasao harshitasao requested a review from a team as a code owner July 3, 2024 19:54
Copy link
Member

@tomkerkhove tomkerkhove left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks! Can you please:

  • Update the changelog as per the PR checklist (removed unrelated things)
  • Provide some details where this will be pushed to and how we can see it?
  • Provide some docs? I presume this is best suited in our security README?

@harshitasao
Copy link
Author

  • Provide some details where this will be pushed to and how we can see it?

The workflow is preconfigured to run on every repository contribution. After making a code change, you can view the results for the change either through the Scorecard Badge, Code Scanning Alerts or GitHub Workflow Runs.

@tomkerkhove
Copy link
Member

Sounds good, would you mind fixing the conflicts and get the checks to pass please?

(sorry was on vacation)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Enable OpenSSF Scorecard to enhance security practices across the project
2 participants