hashgraph / hedera-sdk-js

Hedera™ Hashgraph SDK for JavaScript/TypeScript
https://docs.hedera.com/guides/docs/sdks
Apache License 2.0
277 stars 145 forks source link

ci: [2024-Q3] CI/CD Audit Story #2410

Open rbarkerSL opened 4 months ago

rbarkerSL commented 4 months ago

Contents

Administrative Audit Criteria

Check Actions State

Check if Actions should be disabled

If actions have not been run in the previous 6 months they should be disabled:

Repository Settings Checks

App Integrations

If actions are enabled:

Security Checks

Custom Properties

Non-Administrative Audit Criteria

Dependabot

Workflow checks

Self Hosted Runners

CODEOWNERS

Other


Repository Settings


Acceptance Criteria

mishomihov00 commented 1 month ago

@rbarkerSL @andrewb1269hg In the build.yml workflow there is a hard-coded key on line 89.

mishomihov00 commented 1 month ago

Non-administrative checks are done. @andrewb1269hg assigning over to you.