Skip to content

Conversation

@RalphHightower
Copy link
Owner

No description provided.

Signed-off-by: Ralph Hightower <[email protected]>
@RalphHightower RalphHightower self-assigned this Sep 10, 2025
@RalphHightower RalphHightower added blog Blog Post build Build Change (actions) markdown Markdown jekyll Jekyll associated changes article – politics Political articles github_actions Pull requests that update GitHub Actions code labels Sep 10, 2025
@github-actions
Copy link

github-actions bot commented Sep 10, 2025

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

OpenSSF Scorecard

PackageVersionScoreDetails
actions/crs-k/stale-branches 8.2.2 🟢 5.2
Details
CheckScoreReason
Maintained🟢 1030 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10
Packaging⚠️ -1packaging workflow not detected
Code-Review🟢 5Found 1/2 approved changesets -- score normalized to 5
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Binary-Artifacts🟢 10no binaries found in the repo
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Pinned-Dependencies🟢 4dependency not pinned by hash detected -- score normalized to 4
Security-Policy⚠️ 0security policy file not detected
License🟢 10license file detected
Fuzzing⚠️ 0project is not fuzzed
Signed-Releases⚠️ -1no releases found
Branch-Protection⚠️ 0branch protection not enabled on development/release branches
SAST🟢 7SAST tool detected but not run on all commits
Vulnerabilities🟢 73 existing vulnerabilities detected

Scanned Files

  • .github/workflows/stale-branches.yml

@RalphHightower RalphHightower merged commit 7e94c20 into main Sep 10, 2025
6 of 8 checks passed
@RalphHightower RalphHightower added the action – success Successful action label Sep 15, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

action – success Successful action article – politics Political articles blog Blog Post build Build Change (actions) github_actions Pull requests that update GitHub Actions code jekyll Jekyll associated changes markdown Markdown

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants