Investigate OpenSSF security scorecard
jmgate opened this issue · 2 comments
jmgate commented
jmgate commented
When we look into, we can add a badge along these lines:
[![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/{owner}/{repo}/badge)](https://securityscorecards.dev/viewer/?uri=github.com/{owner}/{repo})
jmgate commented
Should just need to add this action:
- name: OSSF Scorecard action
uses: ossf/scorecard-action@v2.3.1