Skip to content

Conversation

kikofernandez
Copy link
Contributor

  • Creates now GH Issues for possible vendor vulnerabilities using an Erlang Bot with minimum privileges.
  • Fixes the vendor vulnerability scanner from creating issues targeting maint-29, when those should have been maint

Create GH Issues for vendor vulnerabilities using a GH Application,
which is an Erlang Vendor Vulnerability Scanner Bot. this is performed
to avoid passing too many privileges from the GH_TOKEN to the reusable workflow
Copy link
Contributor

github-actions bot commented Sep 16, 2025

CT Test Results

  1 files   11 suites   3m 10s ⏱️
 95 tests  91 ✅ 4 💤 0 ❌
111 runs  107 ✅ 4 💤 0 ❌

Results for commit e5e8747.

♻️ This comment has been updated with latest results.

To speed up review, make sure that you have read Contributing to Erlang/OTP and that all checks pass.

See the TESTING and DEVELOPMENT HowTo guides for details about how to run test locally.

Artifacts

// Erlang/OTP Github Action Bot

@kikofernandez kikofernandez changed the title Fixes the scanner from creating issues named maint-29 Fixes to the vendor vulnerability scanner Sep 16, 2025
@kikofernandez kikofernandez self-assigned this Sep 16, 2025
@kikofernandez kikofernandez merged commit 8eb8e1d into erlang:master Sep 16, 2025
27 of 28 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant