build(deps): bump getsentry/github-workflows from b6d9e26d1c5bb01362670e13288b2284bab8cbf9 to c802283cd9075b7a2b7a32655019c21c21676e34 #6779
Workflow file for this run
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: 'Dependency Review' | |
| on: [pull_request] | |
| permissions: | |
| contents: read | |
| jobs: | |
| dependency-review: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - name: 'Checkout Repository' | |
| uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
| - name: 'Check Config' | |
| id: check_config | |
| run: | | |
| if [ -f .github/dependency-review-config.yml ]; then | |
| echo "dependency_review_config_exists=true" >> $GITHUB_ENV | |
| else | |
| echo "dependency_review_config_exists=false" >> $GITHUB_ENV | |
| fi | |
| - name: Dependency Review (local config) | |
| if: env.dependency_review_config_exists == 'true' | |
| uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 | |
| with: | |
| config-file: './.github/dependency-review-config.yml' | |
| - name: Dependency Review | |
| if: env.dependency_review_config_exists == 'false' | |
| uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 | |
| with: | |
| fail-on-severity: high |