Skip to content

Add Fleet Management > Agents view #137

Add Fleet Management > Agents view

Add Fleet Management > Agents view #137

# πŸ”’ Dependency Review Workflow
#
# ⚑ Overview:
# This GitHub Action scans dependency manifest files modified in a Pull Request (PR)
# to detect any declared or updated packages with known vulnerabilities.
#
# 🚫 Automatic PR Blocking:
# If this workflow is marked as required, PRs introducing known-vulnerable packages
# will be blocked from merging, helping maintain a secure codebase.
#
# πŸ“š Resources:
# - πŸ—‚οΈ Source repository: https://github.com/actions/dependency-review-action
# - πŸ“– Public documentation: https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/about-dependency-review#dependency-review-enforcement
#
# πŸ”„ Key Features:
# - πŸ“ Scans dependency manifest files for changes in PRs.
# - πŸ›‘οΈ Surfaces known-vulnerable versions of dependencies.
# - 🚨 Automatically blocks insecure dependency additions when configured.
name: 'Dependency Review'
on: [pull_request]
concurrency:
group: pr-${{ github.event.pull_request.number || github.ref }}
cancel-in-progress: true
permissions:
contents: read
jobs:
dependency-review:
runs-on: ubuntu-latest
steps:
- name: 'Checkout Repository'
uses: actions/checkout@v4
- name: 'Dependency Review'
uses: actions/dependency-review-action@v4