diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index dbd571c..e8dc396 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -13,6 +13,8 @@ jobs: name: Release runs-on: ubuntu-latest # nosemgrep: non-self-hosted-runner steps: + - name: Setup SafeDep PMG + uses: safedep/pmg@v1 - name: Checkout Codebase uses: actions/checkout@v3 with: diff --git a/.github/workflows/validate.yml b/.github/workflows/validate.yml index 22f9264..04f2814 100644 --- a/.github/workflows/validate.yml +++ b/.github/workflows/validate.yml @@ -10,6 +10,8 @@ jobs: name: Validate Source code runs-on: ubuntu-latest steps: + - name: Setup SafeDep PMG + uses: safedep/pmg@v1 - uses: actions/checkout@v3 - uses: actions/setup-node@v2 with: @@ -28,6 +30,8 @@ jobs: name: Run Build runs-on: ubuntu-latest steps: + - name: Setup SafeDep PMG + uses: safedep/pmg@v1 - uses: actions/checkout@v3 - uses: actions/setup-node@v2 with: