diff --git a/.github/workflows/asf-allowlist-check.yml b/.github/workflows/asf-allowlist-check.yml new file mode 100644 index 000000000000..18bc2c3d33b7 --- /dev/null +++ b/.github/workflows/asf-allowlist-check.yml @@ -0,0 +1,37 @@ +# +# Licensed to the Apache Software Foundation (ASF) under one +# or more contributor license agreements. See the NOTICE file +# distributed with this work for additional information +# regarding copyright ownership. The ASF licenses this file +# to you under the Apache License, Version 2.0 (the +# "License"); you may not use this file except in compliance +# with the License. You may obtain a copy of the License at +# +# http://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, +# software distributed under the License is distributed on an +# "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY +# KIND, either express or implied. See the License for the +# specific language governing permissions and limitations +# under the License. +# + +name: "ASF Allowlist Check" +on: + pull_request: + paths: + - '.github/**' + +permissions: + contents: read + +jobs: + allowlist-check: + runs-on: ubuntu-24.04 + steps: + - uses: actions/checkout@v4 + with: + persist-credentials: false + # TODO: pin to @main after https://github.com/apache/infrastructure-actions/pull/587 is merged + - uses: apache/infrastructure-actions/allowlist-check@aa2e2255f589df470b41dc8ed27fd06f753cac9e diff --git a/.github/workflows/open-api.yml b/.github/workflows/open-api.yml index 41d52d1768fc..92948894d452 100644 --- a/.github/workflows/open-api.yml +++ b/.github/workflows/open-api.yml @@ -46,7 +46,7 @@ jobs: steps: - uses: actions/checkout@v6 - name: Install uv - uses: astral-sh/setup-uv@5a095e7a2014a4212f075830d4f7277575a9d098 + uses: astral-sh/setup-uv@v7 - name: Install dependencies working-directory: ./open-api run: make install