community icon indicating copy to clipboard operation
community copied to clipboard

Automatic updates to the list of allowed actions

Open barchw opened this issue 7 months ago • 2 comments

Description Third party actions and their versions that are allowed to be used in Kyma organisation repositories are stored in docs/contributing/assets/allowed_actions.json. This list is often outdated, making the process of being up-to-date with the actions releases problematic.

This issue proposes a solution of having an automation that would create a PR to this list, that could later be approved by Kyma Security team (dependabot alike)

Reasons Being up-to-date with actions.

References

  • https://github.com/kyma-project/community/issues/911

barchw avatar Jul 11 '24 07:07 barchw