Skip to content

improve security reporting on PR build #1095

@litlfred

Description

@litlfred

The current security check report (see below) needs to be improved:

  • condense output
  • instead of icons use buttons/circles like in GH page build/deploy workflow
  • it should run on every build and update the existing security check comment if it already exists (see existing python PR comment functionality)
  • it should add more security checks. please propose a lot of the types of checks that can be done and reported on (e.g. dependbot?, any open source test suites that are applicable? any GitHub services? tools to scan for code/variable injection?)

Security Check Report

🔒 Dependency Security Check Results
✅ **No vulnerabilities found!**

All dependencies have been scanned and no security vulnerabilities were detected.

found 0 vulnerabilities


---

### ✅ Security Status: CLEAN
Your changes maintain the security posture of th

Metadata

Metadata

Assignees

Labels

No labels
No labels

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions