Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings
This repository was archived by the owner on Apr 15, 2025. It is now read-only.
/vulcanizerPublic archive

Improving Security Posture#117

Merged
dtaivpp merged 4 commits intomainfromimproving-posture
Dec 13, 2024
Merged

Improving Security Posture#117

dtaivpp merged 4 commits intomainfromimproving-posture
Dec 13, 2024

Conversation

@dtaivpp
Copy link
Contributor

I've just taken some time to improve the security posture of this repo:

  1. Giving workflow steps narrowly scoped permissions
  2. Pinning dependencies in workflows to explicit commit hashes

These are really just some cleanup items and this does not necessitate a release.

CopilotAI review requested due to automatic review settingsDecember 13, 2024 14:43
Copy link

CopilotAI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others.Learn more.

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

Comments suppressed due to low confidence (1)

.github/workflows/releases.yml:27

  • [nitpick] The commit hash b953231f81b8dfd023c58e0854a721e35037f28b should be replaced with a more descriptive tag or version to improve clarity and maintainability.
uses: goreleaser/goreleaser-action@b953231f81b8dfd023c58e0854a721e35037f28b

Tip: Copilot only keeps its highest confidence comments to reduce noise and keep you focused.Learn more

@dtaivppdtaivpp merged commitc03609c intomainDec 13, 2024
8 checks passed
@dtaivppdtaivpp deleted the improving-posture branchDecember 13, 2024 16:23
Sign up for freeto subscribe to this conversation on GitHub. Already have an account?Sign in.

Reviewers

Copilot code reviewCopilotCopilot left review comments

+1 more reviewer

@tomthorogoodtomthorogoodtomthorogood approved these changes

Reviewers whose approvals may not affect merge requirements

Assignees

No one assigned

Labels

None yet

Projects

None yet

Milestone

No milestone

Development

Successfully merging this pull request may close these issues.

3 participants

@dtaivpp@tomthorogood

[8]ページ先頭

©2009-2025 Movatter.jp