Skip to content

gh: forwarded codeql secrets through code-scan-cron.yml#57

Merged
azazeal merged 1 commit into
mainfrom
panos/workflows
May 20, 2026
Merged

gh: forwarded codeql secrets through code-scan-cron.yml#57
azazeal merged 1 commit into
mainfrom
panos/workflows

Conversation

@azazeal
Copy link
Copy Markdown

@azazeal azazeal commented May 20, 2026

This PR restructures code-scan-cron.yml to grant the code-scan job actions: read, contents: read, and security-events: write (per-job), and adds secrets: inherit so CodeQL can fetch private modules — see smallstep/workflows#326.

@azazeal azazeal marked this pull request as ready for review May 20, 2026 14:14
@azazeal azazeal enabled auto-merge May 20, 2026 14:14
@azazeal azazeal merged commit 67d0d13 into main May 20, 2026
14 checks passed
@azazeal azazeal deleted the panos/workflows branch May 20, 2026 14:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants