Skip to content
This repository has been archived by the owner on Nov 28, 2024. It is now read-only.

build(deps): bump endorlabs/github-action from e3c2c24b65c64607c2997c6a264bf27ca75d90be to 5f104e128de8d0c4d1174878aedbafdd85be3e79 in the github-actions group #589

build(deps): bump endorlabs/github-action from e3c2c24b65c64607c2997c6a264bf27ca75d90be to 5f104e128de8d0c4d1174878aedbafdd85be3e79 in the github-actions group

build(deps): bump endorlabs/github-action from e3c2c24b65c64607c2997c6a264bf27ca75d90be to 5f104e128de8d0c4d1174878aedbafdd85be3e79 in the github-actions group #589

Workflow file for this run

on:
workflow_dispatch: {}
pull_request: {}
push:
branches:
- main
- master
paths:
- .github/workflows/semgrep.yml
schedule:
# random HH:MM to avoid a load spike on GitHub Actions at 00:00
- cron: 49 5 * * *
name: Semgrep
permissions:
contents: read
jobs:
semgrep:
name: semgrep/ci
runs-on: ubuntu-20.04
env:
SEMGREP_APP_TOKEN: ${{ secrets.SEMGREP_APP_TOKEN }}
container:
image: returntocorp/semgrep
steps:
- name: Harden Runner
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f # v2.10.2
with:
egress-policy: audit
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
- run: semgrep ci