Adopt org conventions: reusable-workflow CI, dependabot, labels #10

Merged
amoussa1229 merged 6 commits from feature/adopt-org-conventions into main 2026-06-17 22:00:33 +00:00
2 changed files with 6 additions and 0 deletions
Showing only changes of commit 3d066e04e4 - Show all commits

View file

@ -4,6 +4,9 @@ on:
pull_request:
branches: [main]
permissions:
contents: read
jobs:
ci:
# Thin wrapper over the org reusable CI. The reusable runs ruff lint/format +

View file

@ -3,6 +3,9 @@ name: Dependency Review
on:
pull_request:
permissions:
contents: read
jobs:
review:
uses: Sea-Haven-Industries/.github/.github/workflows/callable-dependency-review.yaml@main
github-advanced-security[bot] commented 2026-06-17 21:52:13 +00:00 (Migrated from github.com)
Review

CodeQL / Workflow does not contain permissions

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {{}}

Show more details

## CodeQL / Workflow does not contain permissions Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {{}} [Show more details](https://github.com/Sea-Haven-Industries/orchestrator/security/code-scanning/5)
amoussa1229 commented 2026-06-17 21:57:13 +00:00 (Migrated from github.com)
Review

Fixed: added permissions in 3d066e0

Fixed: added permissions in 3d066e0