Compare commits
3 Commits
main
...
docs/readm
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
e952bc5693 | ||
|
|
d6b72118c6 | ||
|
|
b56ff1f532 |
22
.github/workflows/secret-scan.yml
vendored
Normal file
22
.github/workflows/secret-scan.yml
vendored
Normal file
@ -0,0 +1,22 @@
|
||||
name: Secret scan
|
||||
|
||||
# Calls the canonical reusable workflow in molecule-core. Defense
|
||||
# against the #2090-class leak (a hosted-agent commit slipping a
|
||||
# credential-shaped string into a PR). Pattern set lives in
|
||||
# molecule-core so we do not maintain a parallel copy here.
|
||||
#
|
||||
# Pinned to @staging because that is the active default branch on the
|
||||
# upstream repo (main lags behind via the staging-promotion workflow).
|
||||
# Updates ride along automatically as the upstream regex set evolves.
|
||||
|
||||
on:
|
||||
pull_request:
|
||||
types: [opened, synchronize, reopened]
|
||||
push:
|
||||
branches: [main, staging, master]
|
||||
merge_group:
|
||||
types: [checks_requested]
|
||||
|
||||
jobs:
|
||||
secret-scan:
|
||||
uses: Molecule-AI/molecule-core/.github/workflows/secret-scan.yml@staging
|
||||
@ -22,3 +22,6 @@ github://Molecule-AI/template-deepagents
|
||||
|
||||
## License
|
||||
Business Source License 1.1 — © Molecule AI.
|
||||
|
||||
## See also
|
||||
For the multi-agent architecture (orchestrator + task agents, file-based coordination via `/workspace/agent-shared/`), the full `config.yaml` schema, environment variables, skill loading rules, dev setup, and release process, see [`CLAUDE.md`](CLAUDE.md).
|
||||
|
||||
Loading…
Reference in New Issue
Block a user