Skip to content

Security OSV-Scanner Update #12

Security OSV-Scanner Update

Security OSV-Scanner Update #12

# SPDX-FileCopyrightText: © 2025 open-nudge <https://github.com/open-nudge>
# SPDX-FileContributor: szymonmaszke <[email protected]>
#
# SPDX-License-Identifier: Apache-2.0
---
name: "Security OSV-Scanner Update"
on:
schedule:
- cron: "0 3 * * 6"
workflow_dispatch:
permissions: {} # yamllint disable-line rule:braces
jobs:
security-osv-scanner-update:
permissions:
# Required to upload SARIF file to CodeQL.
# See: https://github.com/github/codeql-action/issues/2117
actions: "read"
# Require writing security events to upload SARIF file to security tab
security-events: "write"
# Only need to read contents
contents: "read"
name: "Security OSV-Scanner Update"
# yamllint disable rule:line-length
uses: "open-nudge/opentemplate/.github/workflows/security-osv-scanner-reusable.yml@main" # zizmor: ignore[unpinned-uses]
# yamllint enable rule:line-length
with:
sarif: true
...