sandialabs/reverse_argparse

Investigate OpenSSF security scorecard

jmgate opened this issue · 2 comments

When we look into, we can add a badge along these lines:

[![OpenSSF Scorecard](htt‌ps://api.securityscorecards.dev/projects/github.com/{owner}/{repo}/badge)](htt‌ps://securityscorecards.dev/viewer/?uri=github.com/{owner}/{repo})

Should just need to add this action:

- name: OSSF Scorecard action
  uses: ossf/scorecard-action@v2.3.1