Skip to content

test(signed-push): manual smoke workflow (asserts Verified end-to-end) #1002

test(signed-push): manual smoke workflow (asserts Verified end-to-end)

test(signed-push): manual smoke workflow (asserts Verified end-to-end) #1002

Workflow file for this run

# SPDX-License-Identifier: MPL-2.0
name: Secret Scanner
on:
pull_request:
push:
branches: [main]
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
permissions:
contents: read
jobs:
scan:

Check failure on line 17 in .github/workflows/secret-scanner.yml

View workflow run for this annotation

GitHub Actions / Secret Scanner

Invalid workflow file

The workflow is not valid. .github/workflows/secret-scanner.yml (Line: 17, Col: 3): Error calling workflow 'hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@891b1ed6164478616cb3375f328c6487ccb13f80'. The nested job 'gitleaks' is requesting 'actions: read, pull-requests: write', but is only allowed 'actions: none, pull-requests: none'.
# The reusable's gitleaks job no longer requests elevated permissions
permissions:
contents: read
uses: hyperpolymath/standards/.github/workflows/secret-scanner-reusable.yml@891b1ed6164478616cb3375f328c6487ccb13f80
secrets: inherit