agentbbs/.github/workflows
Anthony Ettinger 281dbaf518 ci: add ThreatCrush security scan
Installs threatcrush-scan@1.1.0 from the sh1pt Actions Store.
Scans pull requests for hardcoded credentials, injection, SSRF, unsafe
deserialisation and dependency tampering; uploads SARIF to the Security
tab.

Report-only — it will not fail a pull request. Set the pack's failOn
input to critical,high once the existing findings are triaged.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-08-03 10:31:02 +00:00
..
ci.yml chore(deps): bump actions/setup-go (#95) 2026-07-16 19:01:10 -07:00
deploy.yml chore(deps): bump actions/setup-go (#95) 2026-07-16 19:01:10 -07:00
mailu-update.yml chore: keep all agentbbs services on latest software (#69) 2026-06-30 20:06:06 -07:00
test.yml chore(deps): bump actions/setup-go (#95) 2026-07-16 19:01:10 -07:00
threatcrush-scan.yml ci: add ThreatCrush security scan 2026-08-03 10:31:02 +00:00
vu1nz-scan.yml chore(deps): bump actions/setup-python in the github-actions group (#99) 2026-07-23 19:33:29 -07:00