Skip to content

docs: add Signed commits section to CONTRIBUTING (#62) #166

docs: add Signed commits section to CONTRIBUTING (#62)

docs: add Signed commits section to CONTRIBUTING (#62) #166

# This workflow is managed by gh actions-lock.
# SPDX-License-Identifier: MPL-2.0
name: Secret Scanner
on:
pull_request:
push:
branches: [main]
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
# The reusable's gitleaks job declares pull-requests:write + actions:read; a
# called workflow's job permissions must be a SUBSET of the caller's grant
# (callee ⊆ caller), so the caller grants the union or the run startup-fails
# at plan time with zero jobs.
permissions:
contents: read
jobs:
scan:
uses: hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@571cc734cd69fb846032ec77a662aa8ee4fc32cd
secrets: inherit