Skip to content

Add Destructive Command Guard workflow - #70

Open
wheeljackz wants to merge 3 commits into
mainfrom
wheeljack/setup-destructive-command-guard
Open

Add Destructive Command Guard workflow#70
wheeljackz wants to merge 3 commits into
mainfrom
wheeljack/setup-destructive-command-guard

Conversation

@wheeljackz

@wheeljackz wheeljackz commented Apr 27, 2026

Copy link
Copy Markdown
Collaborator

Summary

  • Add a conservative Destructive Command Guard workflow for repository-wide scan coverage.
  • Pin DCG to v0.4.5 and install the Linux binary directly because the published composite action tag/installer currently does not resolve successfully on GitHub Actions.
  • Keep permissions read-only and fail only on error-severity findings.

Validation

  • YAML parsed with Ruby YAML loader.
  • git diff --check passed.
  • GitHub Actions DCG job is now running from the direct binary installer.

Current check result

  • DCG check passes on the PR branch.

@vercel

vercel Bot commented Apr 27, 2026

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
zainf Ready Ready Preview, Comment Apr 27, 2026 5:29am

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant