We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent e6c6fa9 commit 9548e45Copy full SHA for 9548e45
.github/dependency-review-config.yml
@@ -0,0 +1,4 @@
1
+fail_on_severity: 'critical'
2
+allow_licenses:
3
+ - 'MIT'
4
+deny-licenses: LGPL-2.0, BSD-2-Clause
.github/workflows/dependency-review.yml
@@ -0,0 +1,18 @@
+# https://github.com/actions/dependency-review-action
+
+name: 'Dependency Review'
+on: [pull_request]
5
6
+permissions:
7
+ contents: read
8
9
+jobs:
10
+ dependency-review:
11
+ runs-on: ubuntu-latest
12
+ steps:
13
+ - name: 'Checkout Repository'
14
+ uses: actions/checkout@v4
15
+ - name: 'Dependency Review'
16
+ uses: actions/dependency-review-action@v4
17
+ with:
18
+ config-file: './.github/dependency-review-config.yml'
0 commit comments