Skip to content

Add supply-chain security baseline#5

Merged
servrox merged 1 commit into
masterfrom
supply-chain-sentinel/security-baseline
May 18, 2026
Merged

Add supply-chain security baseline#5
servrox merged 1 commit into
masterfrom
supply-chain-sentinel/security-baseline

Conversation

@supply-chain-sentinel
Copy link
Copy Markdown
Contributor

supply-chain-sentinel security baseline

This PR adds free repository-maintenance and security automation templates managed from your supply-chain-sentinel Control Repository.

Added or updated files:

  • .github/dependabot.yml
  • .github/workflows/security-baseline.yml

The selected automation includes Dependabot metadata, OSV vulnerability scanning, TruffleHog secret scanning, actionlint workflow linting, zizmor workflow security analysis.

Repository: servrox/animations-lib

Created by supply-chain-sentinel.

@supply-chain-sentinel supply-chain-sentinel Bot force-pushed the supply-chain-sentinel/security-baseline branch from a01c012 to 3b5fe5c Compare May 18, 2026 22:09
@servrox servrox merged commit 3b8e582 into master May 18, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant