Skip to content

Commit 4c11b51

Browse files
Andrei.OvcharenkoAndrei.Ovcharenko
authored andcommitted
Fix Scorecard CLI output and permissions
1 parent e491e0b commit 4c11b51

1 file changed

Lines changed: 6 additions & 6 deletions

File tree

.github/workflows/scorecard.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -26,6 +26,7 @@ jobs:
2626
contents: read
2727
issues: read
2828
pull-requests: read
29+
statuses: read
2930
steps:
3031
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6
3132
with:
@@ -45,18 +46,17 @@ jobs:
4546
- name: Analyze
4647
env:
4748
GITHUB_AUTH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
48-
ENABLE_SARIF: "true"
4949
run: |
5050
set -euo pipefail
5151
"$RUNNER_TEMP/scorecard/scorecard" \
5252
--repo="github.com/${{ github.repository }}" \
5353
--commit="${GITHUB_SHA}" \
54-
--format=sarif \
55-
--output="scorecard-results.sarif" \
54+
--format=json \
55+
--output="scorecard-results.json" \
5656
--show-details
57-
- name: Upload Scorecard SARIF artifact
57+
- name: Upload Scorecard artifact
5858
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4
5959
with:
60-
name: openssf-scorecard-sarif
61-
path: scorecard-results.sarif
60+
name: openssf-scorecard
61+
path: scorecard-results.json
6262
if-no-files-found: error

0 commit comments

Comments
 (0)