Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update emitted copy around OpenSSF Scorecard checks #535

Open
justaugustus opened this issue Jul 2, 2024 · 0 comments
Open

Update emitted copy around OpenSSF Scorecard checks #535

justaugustus opened this issue Jul 2, 2024 · 0 comments
Assignees
Labels
documentation Improvements or additions to documentation

Comments

@justaugustus
Copy link
Member

Using uwu-tools/ggreconcile#8 as an example:

This issue was automatically created by Allstar.

Security Policy Violation Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Branch-Protection : branch protection not enabled on development/release branches

* [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

* [0]:merged PR 4 without CI test at HEAD: [749a733](https://github.com/uwu-tools/ggreconcile/commit/749a733844dcab5f3b6a9f9acb3a5862face33c0)

* [0]:merged PR 2 without CI test at HEAD: [2464e9c](https://github.com/uwu-tools/ggreconcile/commit/2464e9c0236dc7f3738e22eb218b0c61f5e87b3e)

⚠️ There is an updated version of this policy result! Click here to see the latest update

This issue will auto resolve when the policy is in compliance.

Issue created by Allstar. See https://github.com/ossf/allstar/ for more information. For questions specific to the repository, please contact the owner or maintainer.

There are some things that likely need to be updated within the check's copy e.g., "Security Scorecards" should be "OpenSSF Scorecard" (ref: ossf/scorecard#2427, ossf/scorecard#2428)

@justaugustus justaugustus self-assigned this Jul 2, 2024
@justaugustus justaugustus added the documentation Improvements or additions to documentation label Jul 2, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
documentation Improvements or additions to documentation
Projects
None yet
Development

No branches or pull requests

1 participant