Skip to content

chore(deps): bump react-dom from 19.2.3 to 19.2.4 #21

chore(deps): bump react-dom from 19.2.3 to 19.2.4

chore(deps): bump react-dom from 19.2.3 to 19.2.4 #21

Workflow file for this run

name: Security-CI
on:
push:
branches: [ "main" ]
pull_request:
branches: [ "main" ]
env:
AZURE_CLIENT_ID: ${{ vars.AZURE_CLIENT_ID }}
AZURE_TENANT_ID: ${{ vars.AZURE_TENANT_ID }}
AZURE_SUBSCRIPTION_ID: ${{ vars.AZURE_SUBSCRIPTION_ID }}
jobs:
security-scan:
runs-on: ubuntu-latest
permissions:
contents: read
security-events: write
id-token: write
steps:
- name: Checkout code
uses: actions/checkout@v4
- name: Azure Login (OIDC)
uses: azure/login@v2
with:
client-id: ${{ env.AZURE_CLIENT_ID }}
tenant-id: ${{ env.AZURE_TENANT_ID }}
subscription-id: ${{ env.AZURE_SUBSCRIPTION_ID }}
- name: Configure AzCopy to reuse Azure CLI token
run: echo "AZCOPY_AUTO_LOGIN_TYPE=AZCLI" >> $GITHUB_ENV
- name: CodeQL Init
uses: github/codeql-action/init@v3
with:
languages: python, javascript, csharp
- name: CodeQL Analyze
uses: github/codeql-action/analyze@v3
- name: Trivy Scan (CRITICAL only)
uses: aquasecurity/trivy-action@master
with:
scan-type: fs
severity: CRITICAL
ignore-unfixed: true
- name: Azure Logout
if: always()
run: az logout