From b0c4826410310cb6de3a6d056df006d431f781fa Mon Sep 17 00:00:00 2001 From: Omar Boukli-Hacene Date: Sat, 8 Jul 2023 03:32:37 +0200 Subject: [PATCH] ci(GitHub): Fix security issue --- .github/workflows/devskim-analysis.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/devskim-analysis.yml b/.github/workflows/devskim-analysis.yml index 0adbd31..8090405 100644 --- a/.github/workflows/devskim-analysis.yml +++ b/.github/workflows/devskim-analysis.yml @@ -24,6 +24,8 @@ jobs: steps: - name: Check out code uses: actions/checkout@v3 + with: + persist-credentials: false - name: Run DevSkim scanner uses: microsoft/DevSkim-Action@v1 @@ -31,5 +33,4 @@ jobs: - name: Report DevSkim scan results to GitHub uses: github/codeql-action/upload-sarif@v2 with: - ignore-globs: "**/.git/**" sarif_file: devskim-results.sarif