Skip to content

Update dependency-review.yml#3078

Open
skynnes wants to merge 1 commit into
mainfrom
fix-dependency-review-output
Open

Update dependency-review.yml#3078
skynnes wants to merge 1 commit into
mainfrom
fix-dependency-review-output

Conversation

@skynnes

@skynnes skynnes commented Jul 22, 2026

Copy link
Copy Markdown
Contributor

Disables the OpenSSF scorecard to enable dependency review to properly render vulnerable packages in PR comments

@odin-by-borg

odin-by-borg Bot commented Jul 22, 2026

Copy link
Copy Markdown

Mjolnir Security Review

VerdictCLEAN · 0 findings
Commitfe9867f · 6s

No security vulnerabilities identified. The PR adds two configuration options (show-openssf-scorecard: false and show-patched-versions: true) to the existing GitHub Actions dependency-review workflow. These are purely declarative CI configuration changes with no impact on application security posture.

View in Odin


1 PR reviewed

@vercel

vercel Bot commented Jul 22, 2026

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
interface Ready Ready Preview, Comment Jul 22, 2026 7:04pm

Request Review

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants