build(deps): bump getsentry/github-workflows from c802283cd9075b7a2b7a32655019c21c21676e34 to 4013fc6e1aeb1be1f9d3b4d232624f0ec1afa613 #7115
Workflow file for this run
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: 'Dependency Review' | |
| on: [pull_request] | |
| permissions: | |
| contents: read | |
| jobs: | |
| dependency-review: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - name: 'Checkout Repository' | |
| uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
| - name: 'Check Config' | |
| id: check_config | |
| run: | | |
| if [ -f .github/dependency-review-config.yml ]; then | |
| echo "dependency_review_config_exists=true" >> $GITHUB_ENV | |
| else | |
| echo "dependency_review_config_exists=false" >> $GITHUB_ENV | |
| fi | |
| - name: Dependency Review (local config) | |
| if: env.dependency_review_config_exists == 'true' | |
| uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 | |
| with: | |
| config-file: './.github/dependency-review-config.yml' | |
| - name: Dependency Review | |
| if: env.dependency_review_config_exists == 'false' | |
| uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 | |
| with: | |
| fail-on-severity: high |