Skip to content

Clean up the npm hardening action and document disabled schedules - #5

Merged
PavlosIsaris merged 1 commit into
mainfrom
cleanup
Sep 30, 2026
Merged

PavlosIsaris merged 1 commit into
mainfrom
cleanup

Conversation

@PavlosIsaris

Copy link
Copy Markdown
Contributor

No behaviour change.

  • verify-npm-hardening: 2-space indentation, like every other workflow and action here. The parsed YAML is identical before and after. The usage header showed an old v4 checkout SHA and a local path; it now shows a SHA-pinned reference and points to security.yml.
  • Workflow guide: GitHub disables scheduled workflows in public repositories after 60 days without activity. Added a note in the Security section and a troubleshooting row.

- verify-npm-hardening: 2-space indentation like the other files; the
  parsed YAML is unchanged. The usage header now shows a SHA-pinned
  reference and points to security.yml
- Guide: GitHub disables scheduled workflows in public repositories after
  60 days without activity
@PavlosIsaris
PavlosIsaris merged commit 927ca21 into main Sep 30, 2026
28 checks passed
@PavlosIsaris
PavlosIsaris deleted the cleanup branch September 30, 2026 12:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant