mirror of
https://github.com/XFox111/bonch-calendar.git
synced 2026-04-22 07:08:01 +03:00
2337a4016e
Bumps the all group with 6 updates in the / directory: | Package | From | To | | --- | --- | --- | | [docker/build-push-action](https://github.com/docker/build-push-action) | `6` | `7` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `6` | `7` | | [docker/metadata-action](https://github.com/docker/metadata-action) | `5` | `6` | | [docker/login-action](https://github.com/docker/login-action) | `3` | `4` | | [actions/configure-pages](https://github.com/actions/configure-pages) | `5` | `6` | | [actions/deploy-pages](https://github.com/actions/deploy-pages) | `4` | `5` | Updates `docker/build-push-action` from 6 to 7 - [Release notes](https://github.com/docker/build-push-action/releases) - [Commits](https://github.com/docker/build-push-action/compare/v6...v7) Updates `actions/upload-artifact` from 6 to 7 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](https://github.com/actions/upload-artifact/compare/v6...v7) Updates `docker/metadata-action` from 5 to 6 - [Release notes](https://github.com/docker/metadata-action/releases) - [Commits](https://github.com/docker/metadata-action/compare/v5...v6) Updates `docker/login-action` from 3 to 4 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](https://github.com/docker/login-action/compare/v3...v4) Updates `actions/configure-pages` from 5 to 6 - [Release notes](https://github.com/actions/configure-pages/releases) - [Commits](https://github.com/actions/configure-pages/compare/v5...v6) Updates `actions/deploy-pages` from 4 to 5 - [Release notes](https://github.com/actions/deploy-pages/releases) - [Commits](https://github.com/actions/deploy-pages/compare/v4...v5) --- updated-dependencies: - dependency-name: docker/build-push-action dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: actions/upload-artifact dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: docker/metadata-action dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: docker/login-action dependency-version: '4' dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: actions/configure-pages dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: all - dependency-name: actions/deploy-pages dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major dependency-group: all ... Signed-off-by: dependabot[bot] <support@github.com>
89 lines
1.8 KiB
YAML
89 lines
1.8 KiB
YAML
name: "Audit pipeline"
|
|
|
|
on:
|
|
push:
|
|
branches: [ "main" ]
|
|
paths-ignore:
|
|
- '.devcontainer/*'
|
|
- '.github/*'
|
|
- '!.github/workflows/audit.yml'
|
|
- '.vscode/*'
|
|
- '**.md'
|
|
- 'LICENSE'
|
|
- 'assets/*'
|
|
pull_request:
|
|
branches: [ "main" ]
|
|
paths-ignore:
|
|
- '.devcontainer/*'
|
|
- '.github/*'
|
|
- '!.github/workflows/audit.yml'
|
|
- '.vscode/*'
|
|
- '**.md'
|
|
- 'LICENSE'
|
|
- 'assets/*'
|
|
workflow_dispatch:
|
|
|
|
permissions:
|
|
packages: write
|
|
|
|
jobs:
|
|
api:
|
|
runs-on: ubuntu-latest
|
|
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
|
|
- uses: docker/build-push-action@v7
|
|
with:
|
|
context: ./api
|
|
tags: ${{ github.repository }}-api:ci
|
|
|
|
- run: docker save ${{ github.repository }}:ci | gzip > api_image.tar.gz
|
|
|
|
- uses: actions/upload-artifact@v7
|
|
with:
|
|
name: api-image
|
|
path: api_image.tar.gz
|
|
|
|
app:
|
|
runs-on: ubuntu-latest
|
|
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
|
|
- uses: docker/build-push-action@v7
|
|
with:
|
|
context: ./app
|
|
tags: ${{ github.repository }}-app:ci
|
|
|
|
- run: docker save ${{ github.repository }}:ci | gzip > app_image.tar.gz
|
|
|
|
- uses: actions/upload-artifact@v7
|
|
with:
|
|
name: app-image
|
|
path: app_image.tar.gz
|
|
|
|
app_audit:
|
|
runs-on: ubuntu-latest
|
|
container: node:latest
|
|
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
|
|
- run: npm install
|
|
working-directory: ./app
|
|
|
|
- run: npm run lint
|
|
working-directory: ./app
|
|
|
|
- run: npm audit --audit-level=moderate
|
|
working-directory: ./app
|
|
|
|
- run: npm audit --audit-level=moderate --json > audit_report.json
|
|
working-directory: ./app
|
|
|
|
- uses: actions/upload-artifact@v7
|
|
with:
|
|
name: app-audit-report
|
|
path: ./app/audit_report.json
|