diff --git a/.github/workflows/security-gate.yml b/.github/workflows/security-gate.yml index b3524e8..7177306 100644 --- a/.github/workflows/security-gate.yml +++ b/.github/workflows/security-gate.yml @@ -7,14 +7,15 @@ on: pull_request: branches: - main + jobs: build: runs-on: ubuntu-latest env: - MAX_CRITICAL: 0 - MAX_HIGH: 0 - MAX_MEDIUM: 0 - MAX_LOW: 0 + MAX_CRITICAL: 1 + MAX_HIGH: 2 + MAX_MEDIUM: 3 + MAX_LOW: 4 GITHUB_TOKEN: ${{ secrets.TOKEN }} steps: - name: Checkout repository @@ -31,4 +32,7 @@ jobs: --critical $MAX_CRITICAL \ --high $MAX_HIGH \ --medium $MAX_MEDIUM \ - --low $MAX_LOW + --low $MAX_LOW \ + --dependency-alerts \ + --code-alerts \ + --secret-alerts