From 9d1fc259d92d2925181137d502377693a0f3c5f5 Mon Sep 17 00:00:00 2001 From: sekhara-madduru <123759301+sekhara-madduru@users.noreply.github.com> Date: Thu, 13 Feb 2025 19:22:03 +0530 Subject: [PATCH 1/2] enabling the ghas --- .github/workflows/security.code-scanning.yml | 12 ++++++++++++ .github/workflows/security.dependency-review.yml | 10 ++++++++++ 2 files changed, 22 insertions(+) create mode 100644 .github/workflows/security.code-scanning.yml create mode 100644 .github/workflows/security.dependency-review.yml diff --git a/.github/workflows/security.code-scanning.yml b/.github/workflows/security.code-scanning.yml new file mode 100644 index 0000000..527128a --- /dev/null +++ b/.github/workflows/security.code-scanning.yml @@ -0,0 +1,12 @@ +name: CodeQL + +on: + pull_request: + branches: [ main ] + push: + branches: [ main ] + workflow_dispatch: + +jobs: + codeql-ruby: + uses: chargehound/security-workflows-public/.github/workflows/codeql-ruby.yml@main \ No newline at end of file diff --git a/.github/workflows/security.dependency-review.yml b/.github/workflows/security.dependency-review.yml new file mode 100644 index 0000000..05e828e --- /dev/null +++ b/.github/workflows/security.dependency-review.yml @@ -0,0 +1,10 @@ +name: Dependency Review + +on: + pull_request: + branches: [ main ] + workflow_dispatch: + +jobs: + dependency-review: + uses: chargehound/security-workflows-public/.github/workflows/dependency-review.yml@main \ No newline at end of file From 16a9e8c338b9e2e5d9dc28f4b08552d3eb11fd2e Mon Sep 17 00:00:00 2001 From: sekhara-madduru <123759301+sekhara-madduru@users.noreply.github.com> Date: Thu, 10 Apr 2025 12:42:07 +0530 Subject: [PATCH 2/2] adding ruby changes --- .github/workflows/ruby.yml | 2 +- .github/workflows/rvm.yml | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/ruby.yml b/.github/workflows/ruby.yml index 8185bd6..e2df30e 100644 --- a/.github/workflows/ruby.yml +++ b/.github/workflows/ruby.yml @@ -11,7 +11,7 @@ jobs: runs-on: ubuntu-latest strategy: matrix: - ruby: [ '2.4', '2.5', '2.6'] + ruby: [ '2.4', '2.5', '2.6', '3.1'] name: Test Ruby ${{ matrix.ruby }} steps: - uses: actions/checkout@v2 diff --git a/.github/workflows/rvm.yml b/.github/workflows/rvm.yml index 9cb1787..5310d10 100644 --- a/.github/workflows/rvm.yml +++ b/.github/workflows/rvm.yml @@ -11,7 +11,7 @@ jobs: runs-on: ubuntu-latest strategy: matrix: - ruby: [ 'jruby-9.2.9.0', 'jruby-head' ] + ruby: [ 'jruby' ] name: Test Ruby ${{ matrix.ruby }} steps: - name: Install libraries @@ -23,7 +23,7 @@ jobs: - name: Set up Ruby run: | source $HOME/.rvm/scripts/rvm - rvm install ${{ matrix.ruby }} --binary + rvm install ${{ matrix.ruby }} rvm --default use ${{ matrix.ruby }} - name: Install dependencies run: |