Skip to content

Bump tox from 4.59.0 to 4.60.0 #36

Bump tox from 4.59.0 to 4.60.0

Bump tox from 4.59.0 to 4.60.0 #36

Workflow file for this run

name: Socket Basics Security Scan
on:
pull_request:
types: [opened, synchronize, reopened]
jobs:
socket-basics-security-scan:
# We intentionally run this shared action from @main, not from a pinned sha
# this is because we control the shared-actions repo, so there is not a significant risk of malicious changes being pushed.
# Plus, the shared action does use pinned dependencies, and so will be updated fairly often. When we do that, we do not
# want to have to update the sha in every repo that uses this shared action, before such updates apply.
uses: ynab/shared-actions/.github/workflows/socket-basics.yml@main

Check failure on line 13 in .github/workflows/socket-basics.yml

View workflow run for this annotation

GitHub Actions / .github/workflows/socket-basics.yml

Invalid workflow file

error parsing called workflow ".github/workflows/socket-basics.yml" -> "ynab/shared-actions/.github/workflows/socket-basics.yml@main" : workflow was not found. See https://docs.github.com/actions/learn-github-actions/reusing-workflows#access-to-reusable-workflows for more information.
secrets:
SOCKET_SECURITY_API_KEY: ${{ secrets.SOCKET_SECURITY_API_KEY }}