Open
Description
Allstar should support creating private vulnerability reports as a policy action in GitHub using the API. This would be useful for the Dangerous-Workflow
check which reports vulnerabilities that are often easily exploitable by drive-by contributors.