Skip to content

setup ossf scorecard and codeql workflows - #564

Merged
SuperQ merged 3 commits into
prometheus:mainfrom
mmorel-35:ossf
Jan 18, 2025
Merged

setup ossf scorecard and codeql workflows#564
SuperQ merged 3 commits into
prometheus:mainfrom
mmorel-35:ossf

Conversation

@mmorel-35

@mmorel-35 mmorel-35 commented Jan 11, 2024

Copy link
Copy Markdown
Contributor

setup ossf scorecard and codeql workflows

Also add the ossf scorecard badge in the Readme.md

OpenSSF Scorecard

Signed-off-by: Matthieu MOREL matthieu.morel35@gmail.com

@github-advanced-security

Copy link
Copy Markdown

This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation.

@mmorel-35
mmorel-35 marked this pull request as draft January 11, 2024 20:16
Comment thread .github/workflows/golangci-lint.yml Outdated
@mmorel-35
mmorel-35 marked this pull request as ready for review January 11, 2024 20:20
Comment thread .github/workflows/golangci-lint.yml Outdated
@mmorel-35
mmorel-35 requested a review from SuperQ October 20, 2024 09:29
@mmorel-35 mmorel-35 changed the title setup ossf scorecard and codql workflows Oct 23, 2024
Signed-off-by: Matthieu MOREL <matthieu.morel35@gmail.com>
Comment thread .github/workflows/codeql.yml
Comment thread .github/workflows/codeql.yml Outdated
@github-advanced-security

Copy link
Copy Markdown

This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation.

Signed-off-by: Matthieu MOREL <matthieu.morel35@gmail.com>
@mmorel-35
mmorel-35 requested a review from SuperQ January 18, 2025 10:57
@SuperQ
SuperQ merged commit 1cc5297 into prometheus:main Jan 18, 2025
@mmorel-35
mmorel-35 deleted the ossf branch January 18, 2025 13:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

3 participants