Skip to content

Security Scan

Security Scan #7

Workflow file for this run

name: Security Scan
on:
push:
branches: [ main ]
pull_request:
branches: [ main ]
schedule:
- cron: '0 0 * * 0' # Hebdomadaire le dimanche
jobs:
security:
name: Analyse de sécurité
runs-on: ubuntu-latest
permissions:
security-events: write
contents: read
steps:
- name: 📥 Checkout
uses: actions/checkout@v4
- name: 🔒 Dependency Review
uses: actions/dependency-review-action@v3
if: github.event_name == 'pull_request'
- name: 🛡️ OSSAR Scan
uses: github/ossar-action@v1
- name: 📊 Upload results to Security tab
uses: github/codeql-action/upload-sarif@v2
with:
sarif_file: results.sarif