Skip to content

Remove duplicate OpenSSF Scorecard workflow (scorecard-enforcer.yml) … #217

Remove duplicate OpenSSF Scorecard workflow (scorecard-enforcer.yml) …

Remove duplicate OpenSSF Scorecard workflow (scorecard-enforcer.yml) … #217

Triggered via push June 21, 2026 02:13
Status Failure
Total duration 16s
Artifacts

governance.yml

on: push
governance  /  Check Workflow Staleness
4s
governance / Check Workflow Staleness
governance  /  Validate Hypatia Baseline
0s
governance / Validate Hypatia Baseline
Fit to window
Zoom out
Zoom in

Annotations

5 errors
governance / Check Workflow Staleness
Process completed with exit code 1.
governance / Check Workflow Staleness
Remove legacy scorecard-enforcer.yml, refresh standards reusable pins, and keep Scorecard out of GitHub Code Scanning unless it runs for every PR head commit.
governance / Check Workflow Staleness: ./.github/workflows/scorecard.yml#L0
Workflow pins stale Scorecard reusable that publishes SARIF / causes Code Scanning waits. Refresh to current standards SHA.
governance / Check Workflow Staleness: ./.github/workflows/hypatia-scan.yml#L0
Workflow pins Hypatia reusable before cache/baseline-delay fix. Refresh to current standards SHA.
governance / Check Workflow Staleness: ./.github/workflows/governance.yml#L0
Workflow pins stale governance reusable. Refresh to current standards SHA.