Skip to content

Commit 5e920c2

Browse files
ci(actions-lock): empty the secret-scanner.yml key for the reusable caller
The caller's only uses: is a job-level reusable workflow, which actions.lock does not track; the stale step entries left from the inline scanner made GitHub refuse to start the workflow (startup_failure, jobs=0). Verified: standards check-actions-lock-gate.sh rc=0 and gh actions-lock --no-fix valid=true. gh actions-lock does not rewrite this key itself (D283). Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_0136eszqrQ53Kj7aBH1D4rXK
1 parent ea595c8 commit 5e920c2

1 file changed

Lines changed: 1 addition & 4 deletions

File tree

‎.github/workflows/actions.lock‎

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -27,10 +27,7 @@ workflows:
2727
'.github/workflows/push-email-notify.yml':
2828
- 'hyperpolymath/smtp-notify-action@v0.2.0'
2929
'.github/workflows/scorecard.yml': []
30-
'.github/workflows/secret-scanner.yml':
31-
- 'actions/checkout@v6.0.2'
32-
- 'gitleaks/gitleaks-action@v2.3.9'
33-
- 'trufflesecurity/trufflehog@v3.93.8'
30+
'.github/workflows/secret-scanner.yml': []
3431
'.github/workflows/workflow-linter.yml':
3532
- 'actions/checkout@v4.1.1'
3633
dependencies:

0 commit comments

Comments
 (0)