diff --git a/.github/workflows/tidelift.yml b/.github/workflows/tidelift.yml new file mode 100644 index 00000000000..af6f01b1c2b --- /dev/null +++ b/.github/workflows/tidelift.yml @@ -0,0 +1,16 @@ +name: Tidelift Align +on: [push] + +jobs: + build: + name: Run Tidelift to ensure approved open source packages are in use + runs-on: ubuntu-latest + steps: + - name: Checkout + uses: actions/checkout@v2 + - name: Scan + uses: tidelift/scan-action@main + env: + TIDELIFT_API_KEY: ${{ secrets.TIDELIFT_API_KEY }} + TIDELIFT_ORGANIZATION: ${{ secrets.TIDELIFT_ORGANIZATION }} + TIDELIFT_PROJECT: ${{ secrets.TIDELIFT_PROJECT }}