Skip to content

Bump actions/dependency-review-action from 4.3.5 to 4.4.0 in the actions group #1826

Bump actions/dependency-review-action from 4.3.5 to 4.4.0 in the actions group

Bump actions/dependency-review-action from 4.3.5 to 4.4.0 in the actions group #1826

Workflow file for this run

name: 'Dependency Review'
on:
pull_request:
permissions:
contents: read
jobs:
dependency-review:
runs-on: ubuntu-latest
steps:
- name: Harden Runner
uses: step-security/harden-runner@91182cccc01eb5e619899d80e4e971d6181294a7 # v2.10.1
with:
disable-sudo: true
egress-policy: block
allowed-endpoints: >
api.github.com:443
github.com:443
api.securityscorecards.dev:443
api.deps.dev:443
- name: 'Checkout Repository'
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
- name: 'Dependency Review'
uses: actions/dependency-review-action@4081bf99e2866ebe428fc0477b69eb4fcda7220a # v4.4.0