Skip to content

Conversation

@naveensrinivasan
Copy link
Contributor

This should help with keeping the GitHub actions updated on new releases. This will also help with keeping it secure.

Dependabot helps in keeping the supply chain secure https://docs.github.com/en/code-security/dependabot

GitHub actions up to date https://docs.github.com/en/code-security/dependabot/working-with-dependabot/keeping-your-actions-up-to-date-with-dependabot

https://github.com/ossf/scorecard/blob/main/docs/checks.md#dependency-update-tool
Signed-off-by: naveensrinivasan [email protected]

@blgm blgm merged commit baea341 into onsi:master Nov 8, 2022
@blgm
Copy link
Collaborator

blgm commented Nov 8, 2022

Thank you @naveensrinivasan. It looks like the same work was also done in another PR, but with a typo (that was not present in your PR), so I've merged your PR to fix the typo.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants