diff --git a/.github/workflows/scorecard-analysis.yml b/.github/workflows/scorecard-analysis.yml index ce2cf892a6c7..be48596de223 100644 --- a/.github/workflows/scorecard-analysis.yml +++ b/.github/workflows/scorecard-analysis.yml @@ -1,5 +1,5 @@ name: Scorecard analysis workflow -on: +on: push: # Only the default branch is supported. branches: [main, master] @@ -15,7 +15,7 @@ jobs: runs-on: ubuntu-latest permissions: security-events: write - + steps: - name: "Checkout code" uses: actions/checkout@ec3a7ce113134d7a93b817d10a8272cb61118579 @@ -37,7 +37,7 @@ jobs: name: SARIF file path: results.sarif retention-days: 5 - + - name: "Upload SARIF results" uses: github/codeql-action/upload-sarif@v1 with: