Skip to content

ci: Update github actions #106

ci: Update github actions

ci: Update github actions #106

Workflow file for this run

name: Continuos Integration
on:
- push
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: ${{ github.ref != 'refs/heads/main' }}
permissions: read-all
jobs:
bot:
uses: ./.github/workflows/bot.yml
permissions:
issues: write
pull-requests: write
repository-projects: write
# devos:
# uses: ./.github/workflows/devos.yml
trivy:
uses: ./.github/workflows/trivy.yml
permissions:
contents: write
id-token: write
security-events: write
scorecard:

Check failure on line 27 in .github/workflows/cicd.yml

View workflow run for this annotation

GitHub Actions / Continuos Integration

Invalid workflow file

The workflow is not valid. .github/workflows/cicd.yml (Line: 27, Col: 3): Error calling workflow 'anselmes/devos/.github/workflows/scorecard.yml@c2b7fb60ad7bf4a77269d55e7c98e189fe70a86d'. The workflow is requesting 'contents: write, security-events: write, id-token: write', but is only allowed 'contents: read, security-events: read, id-token: read'.
uses: ./.github/workflows/scorecard.yml
# permissions:
# contents: write
# id-token: write
# security-events: write
# sonarqube:
# uses: ./.github/workflows/sonarqube.yml