Skip to content

Update dependency review job permissions and add comment summary option#204

Merged
frasermolyneux merged 1 commit intomainfrom
feature/gh-workflow-enhancements
Feb 9, 2026
Merged

Update dependency review job permissions and add comment summary option#204
frasermolyneux merged 1 commit intomainfrom
feature/gh-workflow-enhancements

Conversation

@frasermolyneux
Copy link
Owner

No description provided.

Copilot AI review requested due to automatic review settings February 9, 2026 15:57
@frasermolyneux frasermolyneux enabled auto-merge (squash) February 9, 2026 15:57
@github-actions
Copy link
Contributor

github-actions bot commented Feb 9, 2026

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

Scanned Files

None

Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the GitHub Actions “dependency-review” job in the code quality workflow to allow posting dependency review summaries directly to pull requests.

Changes:

  • Change dependency-review job pull-requests permission from read to write.
  • Configure actions/dependency-review-action@v4 to always post a PR comment summary via comment-summary-in-pr: always.

@sonarqubecloud
Copy link

sonarqubecloud bot commented Feb 9, 2026

@frasermolyneux frasermolyneux merged commit 7363748 into main Feb 9, 2026
20 checks passed
@frasermolyneux frasermolyneux deleted the feature/gh-workflow-enhancements branch February 9, 2026 16:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants