Skip to content

Commit

Permalink
allstar: Add initial config for Allstar GitHub App (#39)
Browse files Browse the repository at this point in the history
* allstar: Add initial config for Allstar GitHub App
* allstar: Add initial config for OpenSSF Scorecard checks

---------

Signed-off-by: Stephen Augustus <[email protected]>
  • Loading branch information
justaugustus committed May 28, 2024
1 parent 006dc19 commit 1952b22
Show file tree
Hide file tree
Showing 6 changed files with 38 additions and 0 deletions.
2 changes: 2 additions & 0 deletions allstar/allstar.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,2 @@
optConfig:
optOutStrategy: true
3 changes: 3 additions & 0 deletions allstar/binary_artifacts.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
optConfig:
optOutStrategy: true
action: issue
3 changes: 3 additions & 0 deletions allstar/branch_protection.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
optConfig:
optOutStrategy: true
action: issue
3 changes: 3 additions & 0 deletions allstar/outside.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
optConfig:
optOutStrategy: true
action: issue
24 changes: 24 additions & 0 deletions allstar/scorecard.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,24 @@
optConfig:
optOutStrategy: true
action: issue
checks:
- "Binary-Artifacts"
- "Branch-Protection"
- "CI-Tests"
- "CII-Best-Practices"
- "Code-Review"
- "Contributors"
- "Dangerous-Workflow"
- "Dependency-Update-Tool"
- "Fuzzing"
- "License"
- "Maintained"
- "Packaging"
- "Pinned-Dependencies"
- "SAST"
- "SBOM"
- "Security-Policy"
- "Signed-Releases"
- "Token-Permissions"
- "Vulnerabilities"
- "Webhooks"
3 changes: 3 additions & 0 deletions allstar/security.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
optConfig:
optOutStrategy: true
action: issue

0 comments on commit 1952b22

Please sign in to comment.