Repository navigation
chore(deps): bump the actions group across 1 directory with 2 updates #1153
governance.yml
on: pull_request
governance
/
Check Workflow Staleness
11s
governance
/
Allowlist Preflight
7s
governance
/
Live Actions policy (credentialed advisory)
5s
governance
/
...
/
package anti-pattern policy
11s
governance
/
Guix packaging policy (Nix retired)
9s
governance
/
Security policy checks
6s
governance
/
Code quality + docs
11s
governance
/
Well-Known (RFC 9116 + RSR)
6s
governance
/
Workflow security linter
13s
governance
/
Actions lockfile verify
9s
governance
/
Trusted-base reduction policy
8s
governance
/
Licence consistency
6s
governance
/
Exemption ratchet
8s
governance
/
Debt ratchet
5s
governance
/
Validate Hypatia Baseline
30s
Annotations
2 errors and 4 warnings
|
governance / Actions lockfile verify
Process completed with exit code 1.
|
|
governance / Actions lockfile verify
actions-lock gate: lockfile verification FAILED (exit 1). Regenerate with scripts/update-actions-lock.sh in the same PR as the uses: change.
|
|
governance / Live Actions policy (credentialed advisory)
Live Actions policy was not evaluated: HYPATIA_SCAN_PAT was not supplied by the caller. The separate tree allowlist gate still ran.
|
|
governance / Well-Known (RFC 9116 + RSR)
Missing RSR recommended files: ai.txt humans.txt
|
|
governance / Security policy checks
HTTP URLs found — ADVISORY, does not fail this job. Use HTTPS:
|
|
governance / Security policy checks
Weak crypto (MD5/SHA1) detected — ADVISORY, does not fail this job. Use SHA256+:
|