diff --git a/.github/workflows/semgrep.yml b/.github/workflows/semgrep.yml deleted file mode 100644 index 7337f26..0000000 --- a/.github/workflows/semgrep.yml +++ /dev/null @@ -1,25 +0,0 @@ -name: semgrep - -on: - pull_request: {} - - push: - branches: [master] - - schedule: - - cron: '30 0 1,15 * *' - -jobs: - scan: - runs-on: ubuntu-latest - container: - image: returntocorp/semgrep - - # Skip any PR created by dependabot to avoid permission issues - if: (github.actor != 'dependabot[bot]') - steps: - - uses: actions/checkout@main - - name: Run Semgrep to check for vulnerabilities - run: semgrep ci - env: - SEMGREP_APP_TOKEN: ${{ secrets.SEMGREP_TOKEN }}