fix(release): host SVG loader for flatpak export's icon validation (#40) #136
security.yml
on: push
shared
/
Action pin lint (40-char SHA required)
3s
shared
/
Vulnerability allowlist expiry check
7s
shared
/
OSV-Scanner (vendored + manifest deps)
5s
shared
/
Dependency review (GitHub advisory DB)
shared
/
Secret scan (gitleaks)
6s
Annotations
1 warning
|
shared / OSV-Scanner (vendored + manifest deps)
OSV-Scanner found no package sources in the requested paths — treating as non-fatal.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
gitleaks-report
|
6.91 KB |
sha256:f3f2a5d03d647a6fbc823c913909e1926c849a266255c1a6480df47e8c56bd5d
|
|