github-actions/72-reusable-security-scan.yml

name: Reusable Security Scan
on:
  workflow_call:
jobs:
  scan:
    runs-on: ubuntu-latest
    steps:
      - uses: actions/checkout@v4
      - run: grep -RInE 'password|secret|token' . --exclude-dir=.git || true