Skip to content

[FEATURE] Add security.yml #4

@FrilLab

Description

@FrilLab

Problem

Resolve dependency-driven security challenges

의존성에 의한 보안 문제를 해결

Proposed Solution

Add workflows/security.yml

Enable 'Advanced Security -> Dependency graph'

Alternatives Considered

No response

Additional Context

name: Security

on:
  pull_request:
    branches:
      - main

permissions:
  contents: read
  security-events: write

jobs:
  dependency-review:
    name: Dependency Review
    runs-on: ubuntu-latest

    steps:
      - name: Checkout Repository
        uses: actions/checkout@v4

      - name: Review Dependencies
        uses: actions/dependency-review-action@v4

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions