Skip to content

Commit

Permalink
run dependency review only on pull requests (#1443)
Browse files Browse the repository at this point in the history
* separate dependency review to a separate workflow

* PR feedback
  • Loading branch information
rtpascual authored May 7, 2024
1 parent d1716d1 commit 80a4a10
Show file tree
Hide file tree
Showing 2 changed files with 4 additions and 1 deletion.
2 changes: 2 additions & 0 deletions .changeset/rich-queens-admire.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,2 @@
---
---
3 changes: 2 additions & 1 deletion .github/workflows/health_checks.yml
Original file line number Diff line number Diff line change
Expand Up @@ -428,13 +428,14 @@ jobs:
with:
category: /language:javascript
dependency-review:
if: github.event_name == 'pull_request'
runs-on: ubuntu-latest
permissions:
contents: read
steps:
- name: Checkout repository
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # version 3.6.0
- name: Dependency Review
uses: actions/dependency-review-action@v4
uses: actions/dependency-review-action@0c155c5e8556a497adf53f2c18edabf945ed8e70 # version 4.3.2
with:
config-file: ./.github/dependency_review_config.yml

0 comments on commit 80a4a10

Please sign in to comment.