diff --git a/.github/workflows/ossf.yml b/.github/workflows/ossf.yml new file mode 100644 index 000000000..3b9bc254e --- /dev/null +++ b/.github/workflows/ossf.yml @@ -0,0 +1,22 @@ +name: OSSF Scorecard Weekly + +on: + schedule: + - cron: '0 0 * * 0' # Runs every Sunday at midnight UTC + workflow_dispatch: + +jobs: + ossf-scorecard: + runs-on: ubuntu-latest + steps: + - name: Checkout repository + uses: actions/checkout@v4 + + - name: Publish OSSF Scorecard badge to README + uses: ossf/scorecard-action@v2 + with: + publish_results: true + badge: true + branch: main + readme_path: README.md +