diff --git a/.github/dependency-review-config-foss.yaml b/.github/dependency-review-config-foss.yaml new file mode 100644 index 0000000..72565b5 --- /dev/null +++ b/.github/dependency-review-config-foss.yaml @@ -0,0 +1,9 @@ +# GitHub Dependency Review Configuration for Free and Open Source Software +# +# Dependency review helps you understand dependency changes and the security impact of these +# changes. +# +# Documentation: +# - https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/about-dependency-review + +fail-on-severity: critical