Skip to content

Commit c245afe

Browse files
[StepSecurity] Apply security best practices
Signed-off-by: StepSecurity Bot <[email protected]>
1 parent f242326 commit c245afe

File tree

3 files changed

+52
-2
lines changed

3 files changed

+52
-2
lines changed

.github/dependabot.yml

Lines changed: 50 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -60,3 +60,53 @@ updates:
6060
- dependencies
6161
assignees:
6262
- jaybuidl
63+
64+
- package-ecosystem: npm
65+
directory: /contracts
66+
schedule:
67+
interval: daily
68+
69+
- package-ecosystem: npm
70+
directory: /eslint-config
71+
schedule:
72+
interval: daily
73+
74+
- package-ecosystem: npm
75+
directory: /kleros-app
76+
schedule:
77+
interval: daily
78+
79+
- package-ecosystem: npm
80+
directory: /kleros-sdk
81+
schedule:
82+
interval: daily
83+
84+
- package-ecosystem: npm
85+
directory: /prettier-config
86+
schedule:
87+
interval: daily
88+
89+
- package-ecosystem: docker
90+
directory: /services/bots/base
91+
schedule:
92+
interval: daily
93+
94+
- package-ecosystem: npm
95+
directory: /subgraph
96+
schedule:
97+
interval: daily
98+
99+
- package-ecosystem: npm
100+
directory: /tsconfig
101+
schedule:
102+
interval: daily
103+
104+
- package-ecosystem: npm
105+
directory: /web-devtools
106+
schedule:
107+
interval: daily
108+
109+
- package-ecosystem: npm
110+
directory: /web
111+
schedule:
112+
interval: daily

.github/workflows/sentry-release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -72,7 +72,7 @@ jobs:
7272
working-directory: web
7373

7474
- name: Create Sentry release
75-
uses: getsentry/action-release@v1
75+
uses: getsentry/action-release@f6dfa3d84a1c740b94aa45255c5e032b744a095d # v1.9.0
7676
env:
7777
SENTRY_AUTH_TOKEN: ${{ secrets.SENTRY_AUTH_TOKEN }}
7878
SENTRY_ORG: ${{ secrets.SENTRY_ORG }}

services/bots/base/Dockerfile

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
FROM node:20-alpine
1+
FROM node:20-alpine@sha256:2cd2a6f4cb37cf8a007d5f1e9aef090ade6b62974c7a274098c390599e8c72b4
22

33
WORKDIR /usr/src/app
44

0 commit comments

Comments
 (0)