.github/workflows/semgrep.yml in administrate-field-belongs_to_search-0.9.0 vs .github/workflows/semgrep.yml in administrate-field-belongs_to_search-0.10.0
- old
+ new
@@ -1,22 +1,28 @@
######################################################################################################################
# THIS FILE IS AUTOGENERATED. SEE https://github.com/fishbrain/terraform/blob/master/repositories/semgrep.tf #
######################################################################################################################
name: Semgrep
on:
+ workflow_dispatch: {}
pull_request: {}
+ push:
+ branches:
+ - main
+ - master
+ paths:
+ - .github/workflows/semgrep.yml
schedule:
- - cron: '0 2 * * 0' # Once a week at 2am.
+ - cron: "0 2 * * 0" # Once a week at 2am.
jobs:
semgrep:
- name: Scan
- runs-on: buildjet-2vcpu-ubuntu-2204
+ name: Semgrep
+ runs-on: warp-ubuntu-latest-x64-2x
timeout-minutes: 15 # There's been issues with some runs hanging. This times out after 15 minutes instead of the default 360.
+ env:
+ SEMGREP_APP_TOKEN: ${{ secrets.SEMGREP_APP_TOKEN }}
container:
- image: returntocorp/semgrep
- if: (github.actor != 'dependabot[bot]')
+ image: semgrep/semgrep
steps:
- uses: actions/checkout@v4
- run: semgrep ci
- env:
- SEMGREP_APP_TOKEN: ${{ secrets.SEMGREP_APP_TOKEN }}