Forráskód Böngészése

Merge branch 'master' into release/0.0.1

Nicolas Meienberger 3 éve
szülő
commit
cfed6af052

+ 2 - 1
.github/workflows/ci.yml

@@ -45,4 +45,5 @@ jobs:
         run: pnpm -r lint
         run: pnpm -r lint
       
       
       - name: Run tests
       - name: Run tests
-        run: pnpm -r test
+        run: pnpm -r test
+

+ 20 - 0
.github/workflows/dependency-review.yml

@@ -0,0 +1,20 @@
+# Dependency Review Action
+#
+# This Action will scan dependency manifest files that change as part of a Pull Reqest, surfacing known-vulnerable versions of the packages declared or updated in the PR. Once installed, if the workflow run is marked as required, PRs introducing known-vulnerable packages will be blocked from merging.
+#
+# Source repository: https://github.com/actions/dependency-review-action
+# Public documentation: https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/about-dependency-review#dependency-review-enforcement
+name: 'Dependency Review'
+on: [pull_request]
+
+permissions:
+  contents: read
+
+jobs:
+  dependency-review:
+    runs-on: ubuntu-latest
+    steps:
+      - name: 'Checkout Repository'
+        uses: actions/checkout@v3
+      - name: 'Dependency Review'
+        uses: actions/dependency-review-action@v1

+ 1 - 1
.github/workflows/release.yml

@@ -4,7 +4,7 @@ on:
   push:
   push:
     branches:    
     branches:    
       - master
       - master
-
+      
 jobs:
 jobs:
   release:
   release:
     runs-on: ubuntu-latest
     runs-on: ubuntu-latest