Skip to content

Conversation

@macedogm
Copy link
Contributor

This PR adds FOSSA license scanning workflow.

Signed-off-by: Guilherme Macedo <guilherme@gmacedo.com>
Copilot AI review requested due to automatic review settings January 14, 2026 03:32
@macedogm macedogm requested review from a team, Yu-Jack and tserong as code owners January 14, 2026 03:32
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR introduces a FOSSA license scanning workflow to automate dependency license compliance checking in the repository. The workflow integrates with FOSSA's scanning service using a shared organizational token retrieved from Vault.

Changes:

  • Added new GitHub Actions workflow for FOSSA license scanning that triggers on pushes to main/master/release branches
  • Configured secure token retrieval from Vault using the rancher-eio/read-vault-secrets action
  • Set up FOSSA scan execution without returning test results to the pipeline

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@Vicente-Cheng Vicente-Cheng merged commit d71f4c1 into harvester:master Jan 17, 2026
13 of 14 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants