From 7954519d4f823469fe408a33395794dcd1788c88 Mon Sep 17 00:00:00 2001 From: Harold Karibiye Date: Thu, 8 Aug 2024 17:49:51 +0100 Subject: [PATCH 1/5] remove redundant package.json --- vanillajs-spa/package-lock.json | 6 ------ 1 file changed, 6 deletions(-) delete mode 100644 vanillajs-spa/package-lock.json diff --git a/vanillajs-spa/package-lock.json b/vanillajs-spa/package-lock.json deleted file mode 100644 index 837327de..00000000 --- a/vanillajs-spa/package-lock.json +++ /dev/null @@ -1,6 +0,0 @@ -{ - "name": "vanillajs-spa", - "lockfileVersion": 3, - "requires": true, - "packages": {} -} From ab9488150ce62a54ed8d2c24870f18e0f4c3d829 Mon Sep 17 00:00:00 2001 From: Harold Karibiye Date: Fri, 30 Aug 2024 11:43:05 +0100 Subject: [PATCH 2/5] send dependabot alerts to teams --- .../send_dependabot_alerts_to_teams.yml | 30 +++++++++++++++++++ 1 file changed, 30 insertions(+) create mode 100644 .github/workflow/send_dependabot_alerts_to_teams.yml diff --git a/.github/workflow/send_dependabot_alerts_to_teams.yml b/.github/workflow/send_dependabot_alerts_to_teams.yml new file mode 100644 index 00000000..73ff6aaf --- /dev/null +++ b/.github/workflow/send_dependabot_alerts_to_teams.yml @@ -0,0 +1,30 @@ +name: Send Dependabot Alerts to Teams + +on: + pull_request: # tempoary to test the workflow + branches: + - main + workflow_dispatch: + push: + branches: + - main + schedule: + - cron: "8 15 * * *" + +jobs: + send-alerts-to-teams: + name: Send Dependabot Alerts to Teams + runs-on: ubuntu-latest + + permissions: + contents: read + security-events: read + + steps: + - name: Fetch alerts & send to teams + id: send-alerts + uses: Azure-Samples/send-dependabot-alerts-to-teams@main + with: + milliseconds: 1 + teams-webhook-url: ${{ secrets.TEAMS_WEBHOOK_URL }} + token: ${{ secrets.LIST_ALERTS_PAT }} From 084a50577684335b76c9c227954d13e7c902d637 Mon Sep 17 00:00:00 2001 From: Harold Karibiye Date: Fri, 30 Aug 2024 11:49:24 +0100 Subject: [PATCH 3/5] rename workflow folder --- .../{workflow => workflows}/send_dependabot_alerts_to_teams.yml | 0 1 file changed, 0 insertions(+), 0 deletions(-) rename .github/{workflow => workflows}/send_dependabot_alerts_to_teams.yml (100%) diff --git a/.github/workflow/send_dependabot_alerts_to_teams.yml b/.github/workflows/send_dependabot_alerts_to_teams.yml similarity index 100% rename from .github/workflow/send_dependabot_alerts_to_teams.yml rename to .github/workflows/send_dependabot_alerts_to_teams.yml From 61c41fcd26f552ce628203fe1d8671f2dc0a7daa Mon Sep 17 00:00:00 2001 From: Harold Karibiye Date: Mon, 2 Sep 2024 11:47:08 +0100 Subject: [PATCH 4/5] remove milliseconds from input --- .github/workflows/send_dependabot_alerts_to_teams.yml | 1 - 1 file changed, 1 deletion(-) diff --git a/.github/workflows/send_dependabot_alerts_to_teams.yml b/.github/workflows/send_dependabot_alerts_to_teams.yml index 73ff6aaf..5b79b795 100644 --- a/.github/workflows/send_dependabot_alerts_to_teams.yml +++ b/.github/workflows/send_dependabot_alerts_to_teams.yml @@ -25,6 +25,5 @@ jobs: id: send-alerts uses: Azure-Samples/send-dependabot-alerts-to-teams@main with: - milliseconds: 1 teams-webhook-url: ${{ secrets.TEAMS_WEBHOOK_URL }} token: ${{ secrets.LIST_ALERTS_PAT }} From e3e1805d7c074ce528b6757abf4ce8ff83eec33d Mon Sep 17 00:00:00 2001 From: Harold Karibiye Date: Mon, 23 Sep 2024 18:50:56 +0100 Subject: [PATCH 5/5] use reusable workflow --- .../workflows/send_dependabot_alerts_to_teams.yml | 15 ++------------- 1 file changed, 2 insertions(+), 13 deletions(-) diff --git a/.github/workflows/send_dependabot_alerts_to_teams.yml b/.github/workflows/send_dependabot_alerts_to_teams.yml index 5b79b795..0baee655 100644 --- a/.github/workflows/send_dependabot_alerts_to_teams.yml +++ b/.github/workflows/send_dependabot_alerts_to_teams.yml @@ -14,16 +14,5 @@ on: jobs: send-alerts-to-teams: name: Send Dependabot Alerts to Teams - runs-on: ubuntu-latest - - permissions: - contents: read - security-events: read - - steps: - - name: Fetch alerts & send to teams - id: send-alerts - uses: Azure-Samples/send-dependabot-alerts-to-teams@main - with: - teams-webhook-url: ${{ secrets.TEAMS_WEBHOOK_URL }} - token: ${{ secrets.LIST_ALERTS_PAT }} + uses: Azure-Samples/send-dependabot-alerts-to-teams/.github/workflows/reusable-workflow.yml@main + secrets: inherit