Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feature: require GitHub Actions to be present #28

Open
hazcod opened this issue Aug 11, 2021 · 1 comment
Open

Feature: require GitHub Actions to be present #28

hazcod opened this issue Aug 11, 2021 · 1 comment
Labels
enhancement New feature or request needs design

Comments

@hazcod
Copy link

hazcod commented Aug 11, 2021

Would be great if allstar could verify whether certain GitHub Actions exist and a minimum version.
Often GitHub Actions contain a set of security screenings to block the PR.

@jeffmendoza
Copy link
Member

Yes, this is needed. Being able to generically configure an expected action/workflow to be present seems very useful. I believe defining how the config would work and the behavior of the policy will be tricky, help is needed here. For example, you can have multiple workflows in a repo, based on different triggers, and they may block/allow different things. I assume we would want to ensure a specific action is a part of a workflow that blocks something specific (PR merge, etc.).

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request needs design
Projects
None yet
Development

No branches or pull requests

2 participants