Skip to content

ci: security updates#4

Open
aliziel wants to merge 3 commits into
mainfrom
ci/security-updates
Open

ci: security updates#4
aliziel wants to merge 3 commits into
mainfrom
ci/security-updates

Conversation

@aliziel

@aliziel aliziel commented Jul 3, 2026

Copy link
Copy Markdown
Collaborator

Note

See NASA-IMPACT/veda-keycloak#253 for more detail on OSSF Scorecard + Dependabot configs, removed repeated detail to help reviewers and better highlight repo-specific deltas.


(Applies same changes as NASA-IMPACT/veda-data#450)

  • Dependabot version updates added:
    • pip (deploy script dependencies)
    • github-actions (CI)
  • OSSF Scorecard added
  • Token permissions
    • Move write permissions from top-level (all jobs) to specific job required

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant