Skip to content

ci(.github): add fossa.yml#3137

Closed
vdice wants to merge 2 commits into
spinframework:mainfrom
vdice:ci/fossa
Closed

ci(.github): add fossa.yml#3137
vdice wants to merge 2 commits into
spinframework:mainfrom
vdice:ci/fossa

Conversation

@vdice

@vdice vdice commented May 15, 2025

Copy link
Copy Markdown
Contributor

Adds a workflow to run FOSSA scans for this project (ref CNCF Onboarding (view))

Signed-off-by: Vaughn Dice <vaughn.dice@fermyon.com>
Co-authored-by: Kate Goldenring <kate.goldenring@fermyon.com>
Comment thread .github/workflows/fossa.yml
@vdice

vdice commented May 15, 2025

Copy link
Copy Markdown
Contributor Author

Are we okay with only triggering the scan on the main (and v*) branches and not on PRs from forks? The FOSSA_API_KEY org secret isn't accessible for PRs from forks.

Co-authored-by: Lann <github-lann@lannbox.com>
Signed-off-by: Vaughn Dice <vaughn.dice@fermyon.com>
@vdice

vdice commented May 15, 2025

Copy link
Copy Markdown
Contributor Author

Superseded by PR from origin as opposed to my fork, so we can test the workflow: #3138

@vdice vdice closed this May 15, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants