mirror of
https://github.com/Sea-Haven-Industries/.github.git
synced 2026-09-30 15:13:12 +00:00
- README: mark compliance-audit.yaml deprecated (2026-06-10), document all 12 reusable workflows (was 6), add workflow-templates and action-pinning policy sections - dependency-review.yml template: convert to thin caller of callable-dependency-review.yaml (was inlining dependency-review-action@v4, drifted from callable @v5) - callable-dependency-review.yaml: preserve comment-summary-in-pr on-failure and grant pull-requests: write - add labeler.yml + labeler.properties.json starter template
16 lines
515 B
YAML
16 lines
515 B
YAML
name: labeler
|
|
on:
|
|
pull_request:
|
|
|
|
# All three permission grants are load-bearing: reusable-workflow permissions can
|
|
# only be downgraded from the caller, so omitting one (e.g. issues:write) either
|
|
# fails to create labels or triggers a silent startup_failure. `pull_request`
|
|
# (NOT pull_request_target) is correct — the org takes no fork PRs.
|
|
permissions:
|
|
contents: read
|
|
pull-requests: write
|
|
issues: write
|
|
|
|
jobs:
|
|
label:
|
|
uses: Sea-Haven-Industries/.github/.github/workflows/callable-labeler.yaml@main
|