diff --git a/.github/workflows/devskim-analysis.yml b/.github/workflows/devskim-analysis.yml index 0adbd31..8090405 100644 --- a/.github/workflows/devskim-analysis.yml +++ b/.github/workflows/devskim-analysis.yml @@ -24,6 +24,8 @@ jobs: steps: - name: Check out code uses: actions/checkout@v3 + with: + persist-credentials: false - name: Run DevSkim scanner uses: microsoft/DevSkim-Action@v1 @@ -31,5 +33,4 @@ jobs: - name: Report DevSkim scan results to GitHub uses: github/codeql-action/upload-sarif@v2 with: - ignore-globs: "**/.git/**" sarif_file: devskim-results.sarif