Skip to content

Test env

Test env #20

Workflow file for this run

# This workflow uses actions that are not certified by GitHub. They are provided
# by a third-party and are governed by separate terms of service, privacy
# policy, and support documentation.
name: Test env
on:
# For Branch-Protection check. Only the default branch is supported. See
# https://github.com/ossf/scorecard/blob/main/docs/checks.md#branch-protection
branch_protection_rule:
workflow_dispatch:
# To guarantee Maintained check is occasionally updated. See
# https://github.com/ossf/scorecard/blob/main/docs/checks.md#maintained
schedule:
- cron: '32 13 * * 0'
push:
branches: [ "main" ]
# Declare default permissions as read only.
permissions: read-all
jobs:
analysis:
name: Scorecard analysis
runs-on: ubuntu-latest
permissions:
# Needed to upload the results to code-scanning dashboard.
security-events: write
# Needed to publish results and get a badge (see publish_results below).
id-token: write
# Uncomment the permissions below if installing in a private repository.
# contents: read
# actions: read
steps:
- name: "Run analysis"
env:
SCORECARD_INTERNAL_GITHUB_INTEGRATION: 1
SCORECARD_INTERNAL_GITHUB_SARIF_TOOL_NAME: tool-name
SCORECARD_INTERNAL_GITHUB_CHECKS: Binary-Artifacts, Security-Policy
uses: laurentsimon/scorecard-remediation-tests/.github/actions/hello@main