Skip to content

Add supply-chain security baseline#2

Merged
servrox merged 1 commit into
masterfrom
supply-chain-sentinel/security-baseline
May 15, 2026
Merged

Add supply-chain security baseline#2
servrox merged 1 commit into
masterfrom
supply-chain-sentinel/security-baseline

Conversation

@supply-chain-sentinel
Copy link
Copy Markdown
Contributor

supply-chain-sentinel security baseline

This PR adds free repository-maintenance and security automation templates managed from your supply-chain-sentinel Control Repository.

Added or updated files:

  • .github/dependabot.yml
  • .github/workflows/security-baseline.yml

The selected automation includes Dependabot metadata, OSV vulnerability scanning, TruffleHog secret scanning, actionlint workflow linting, zizmor workflow security analysis.

Repository: servrox/animations-lib

Created by supply-chain-sentinel.

@supply-chain-sentinel supply-chain-sentinel Bot force-pushed the supply-chain-sentinel/security-baseline branch from 0cc5de3 to d315093 Compare May 15, 2026 20:55
@servrox servrox merged commit 4084b11 into master May 15, 2026
4 checks passed
@servrox servrox deleted the supply-chain-sentinel/security-baseline branch May 15, 2026 21:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant