diff --git a/.github/workflows/codeowners-validator.yml b/.github/workflows/codeowners-validator.yml new file mode 100644 index 0000000000..201777914e --- /dev/null +++ b/.github/workflows/codeowners-validator.yml @@ -0,0 +1,17 @@ +name: "Codeowners Validator" + +on: + push: + branches: [ master ] + pull_request: + # The branches below must be a subset of the branches above + branches: [ master ] + schedule: + # Runs at 15:00 UTC every Monday + - cron: '0 15 * * 1' + +jobs: + call-workflow: + uses: myhelix/security-workflows/.github/workflows/codeowners-validator.yml@v1.0.0 + secrets: + owners-validator-github-secret: ${{ secrets.OWNERS_VALIDATOR_PUBLIC_GITHUB_SECRET }} diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml new file mode 100644 index 0000000000..3f0b45d7ae --- /dev/null +++ b/.github/workflows/codeql-analysis.yml @@ -0,0 +1,17 @@ +name: "CodeQL" + +on: + push: + branches: [ master ] + pull_request: + # The branches below must be a subset of the branches above + branches: [ master ] + schedule: + # Runs at 15:00 UTC every Monday + - cron: '0 15 * * 1' + +jobs: + call-workflow: + uses: myhelix/security-workflows/.github/workflows/codeql-analysis-go.yml@v1.0.0 + secrets: + go-modules-token: ${{ secrets.GO_MODULES_TOKEN }}