add comment calling out need to check if we change version

if we are to bump this version
then we should re-evaluate if there are
any leaks or exploits in the actions implementation

https://github.com/spf13/cobra/pull/1097\#issuecomment-620877596
This commit is contained in:
xchapter7x 2020-04-30 16:28:13 -04:00
parent 3f58c14b11
commit c254a57593

View file

@ -7,6 +7,9 @@ jobs:
labeler:
runs-on: ubuntu-latest
steps:
# if we are to change the labeler version from v0.0.2
# we must review the code for that version
# to make sure there are no leaks or exploits
- uses: paulfantom/periodic-labeler@v0.0.2
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}