fix(release): make README.md / CHANGELOG.md optional in archive bundl… #218
security.yml
on: push
OSV-Scanner (SCA)
7s
Trivy (filesystem + container scan)
18s
Semgrep (SAST)
23s
Gitleaks (secret scan)
15s
jscpd (duplication < 3% on touched code)
13s
SBOM (SPDX + CycloneDX)
15s
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
sbom
|
13.1 KB |
sha256:ae2de71c133a5a8d09789b67790575f585015f7cbb681ce4c8b250884e5c8e31
|
|