Skip to content

Latest commit

 

History

7 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

.github

●───●
     \        m e c h u b
  ●───●───●   deterministic decides · the model explains · a human approves

Default community health files for mechubsec. GitHub applies the files here to any public repository under this organization that does not provide its own:

A repository can override any of these by committing its own copy.

Templates (not inherited)

Some configuration files must live in each repository and cannot be inherited:

  • dependabot/ — Dependabot version update configuration template. Copy dependabot/dependabot.yml to your repo's .github/dependabot.yml.

See each template directory's README for usage instructions.

Reusable workflows

  • .github/workflows/gitleaks.yml — secret scan with the pinned gitleaks binary (no license needed). Call it from any mechubsec repo, pinned to a commit SHA:

    jobs:
      secrets:
        uses: mechubsec/.github/.github/workflows/gitleaks.yml@<commit sha>

    It scans the PR (base..head) or push (before..after) range, as gitleaks-action did; manual/scheduled runs scan full history. It picks up the caller's .gitleaks.toml if present. Bump the gitleaks version here, once, then update callers' pinned SHA.

About

mechub org profile and default community health files

Topics

Resources

Code of conduct

Contributing

Security policy

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Used by

Contributors