Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add OSSF scorecard action to our CI #11392

Merged
merged 2 commits into from
Aug 29, 2024

Conversation

Josh-Walker-GM
Copy link
Collaborator

@Josh-Walker-GM Josh-Walker-GM commented Aug 29, 2024

More information available from: https://scorecard.dev/ and https://github.com/ossf/scorecard.

I think it'll be good for us to have more information and checks running in our CI. These will help guide us towards the best practices in a test/criteria given way.

We may find we need to tinker a little with the settings and of course any resulting alerts will have to be addressed appropriately over time. This is just the first step - enabling the thing.

@Josh-Walker-GM Josh-Walker-GM added release:chore This PR is a chore (means nothing for users) changesets-ok Override the changesets check labels Aug 29, 2024
@Josh-Walker-GM Josh-Walker-GM added this to the chore milestone Aug 29, 2024
@Josh-Walker-GM Josh-Walker-GM self-assigned this Aug 29, 2024
@Josh-Walker-GM Josh-Walker-GM merged commit 1aebcc3 into main Aug 29, 2024
49 of 50 checks passed
@Josh-Walker-GM Josh-Walker-GM deleted the Josh-Walker-GM-add-ossf-ci-check branch August 29, 2024 16:26
dac09 added a commit to dac09/redwood that referenced this pull request Aug 30, 2024
…edwood into feat/prisma-extension-crud-extra

* 'feat/prisma-extension-crud-extra' of github.com:dac09/redwood:
  feat(codegen): support sdl generation for model with compound id (redwoodjs#8556)
  chore(ci): Follow up to workflow permissions (redwoodjs#11397)
  chore(deps): Bump 'loader-utils' within docs (redwoodjs#11396)
  chore(ci): Pin action dependencies by digest (redwoodjs#11395)
  chore(ci): More workflow permission changes (redwoodjs#11394)
  chore(ci): Add permissions to some workflows/jobs (redwoodjs#11393)
  Add OSSF scorecard action to our CI (redwoodjs#11392)
  chore(rsc): Rename rsf -> rsa (redwoodjs#11391)
  few Flightcontrol template & doc updates (redwoodjs#11383)
  chore(jobs tests): Fix a couple of TS issues (redwoodjs#11389)
@Josh-Walker-GM Josh-Walker-GM modified the milestones: chore, v8.0.0 Sep 4, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
changesets-ok Override the changesets check release:chore This PR is a chore (means nothing for users)
Projects
Archived in project
Development

Successfully merging this pull request may close these issues.

1 participant