logicsrc/.github/workflows
Anthony Ettinger d2abd201a6
ci: add ThreatCrush security scan (#122)
Installs threatcrush-scan@1.1.0 from the sh1pt Actions Store.
Scans pull requests for hardcoded credentials, injection, SSRF, unsafe
deserialisation and dependency tampering; uploads SARIF to the Security
tab.

Report-only — it will not fail a pull request. Set the pack's failOn
input to critical,high once the existing findings are triaged.

Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-08-03 06:36:30 -07:00
..
ci.yml Add contract and Playwright PR checks 2026-06-06 11:30:12 +00:00
test.yml ci: build workspaces before running tests; set PUBLIC_URL=https://logicsrc.com 2026-06-07 03:51:00 +00:00
threatcrush-scan.yml ci: add ThreatCrush security scan (#122) 2026-08-03 06:36:30 -07:00
vu1nz-scan.yml Add .github/workflows/vu1nz-scan.yml via sh1pt vu1nz-scan@1.0.0 (#1) 2026-06-06 04:27:34 -07:00