security: Add explicit permissions and security scanning workflow

- Add explicit permissions to all workflows (format, release, ci, test, label-issues, mark-answered)
- Fix format.yml to have write permissions for PR creation
- Add security.yml workflow for automated vulnerability scanning
- Improve security posture with minimal permissions principle
This commit is contained in:
KaifAhmad1
2025-11-24 17:20:10 +05:30
parent 38fa194787
commit 1271957737
234 changed files with 2097 additions and 1568 deletions
+31
View File
@@ -0,0 +1,31 @@
# Code formatting script (PowerShell)
# Formats code with black and sorts imports with isort
$ErrorActionPreference = "Stop"
Write-Host "🎨 Formatting code..." -ForegroundColor Cyan
# Activate virtual environment if it exists
if (Test-Path "venv") {
& .\venv\Scripts\Activate.ps1
}
# Check if directories exist
if (-not (Test-Path "semantica")) {
Write-Host "❌ semantica/ directory not found" -ForegroundColor Red
exit 1
}
# Format with black
Write-Host "📝 Formatting with black..." -ForegroundColor Yellow
black semantica/
Write-Host "✅ Black formatting complete" -ForegroundColor Green
# Sort imports with isort
Write-Host "📦 Sorting imports with isort..." -ForegroundColor Yellow
isort semantica/
Write-Host "✅ Import sorting complete" -ForegroundColor Green
Write-Host ""
Write-Host "✅ Code formatting complete!" -ForegroundColor Green