Aaron Powell
1c72b5f2f2
Potential fix for pull request finding
...
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com >
2026-06-12 12:02:19 +10:00
Aaron Powell
372b845dce
Potential fix for pull request finding
...
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com >
2026-06-11 16:17:04 +10:00
Aaron Powell
b9ea0b7d29
Potential fix for pull request finding
...
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com >
2026-06-11 16:16:04 +10:00
Aaron Powell
d97d8de7ac
Harden path checks and reduce scanner false positives
...
Reject absolute paths, enforce repo-root containment after resolution, and tighten unpinned-version detection to dependency/version contexts to avoid markdown noise.
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com >
2026-06-11 15:51:50 +10:00
Aaron Powell
d7fde9db1f
Add soft-gate PR risk scanning automation
...
Introduce a PR risk scanner script plus two workflows: one to scan changed files and upload findings, and one to upsert a sticky PR comment with a summary table and findings. This adds non-blocking supply-chain risk visibility for agentic contributions.
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com >
2026-06-11 14:37:49 +10:00