Skip to content

fix(ci): restore the required owner_id/repo_id metadata in actions.lo… #230

fix(ci): restore the required owner_id/repo_id metadata in actions.lo…

fix(ci): restore the required owner_id/repo_id metadata in actions.lo… #230

Workflow file for this run

# This workflow is managed by gh actions-lock.
# SPDX-License-Identifier: MPL-2.0
# Hypatia Security Scan
#
# The check GitHub publishes from this wrapper is
#
# <caller job id> / <reusable job display name>
# = hypatia / Hypatia Neurosymbolic Analysis
#
# That string is the estate-canonical context for this gate (standards
# docs/audits/audit-hypatia-pin-orphan-2026-05-27.adoc). It is load-bearing: a
# required status check is matched by string equality against the published
# check-run name, so if the caller job id ever changes, the required check stops
# being satisfied and every pull request is blocked while the board shows green.
# `tools/check-ci-contexts.sh` fails the build if this id and the contract in
# `.machine_readable/CI-CONTEXTS.a2ml` ever drift apart.
name: Hypatia Security Scan
on:
push:
branches: [main, master, develop]
pull_request:
branches: [main, master]
schedule:
- cron: '0 0 * * 0'
workflow_dispatch:
permissions:
actions: read
contents: read
security-events: write
jobs:
hypatia:
uses: hyperpolymath/standards/.github/workflows/hypatia-scan-reusable.yml@9379fb71b66a2e1412cab7c5b5a5ff9f04632552
secrets: inherit