Skip to content

Security audit: Fix vulnerabilities and harden application (#3) #14

Security audit: Fix vulnerabilities and harden application (#3)

Security audit: Fix vulnerabilities and harden application (#3) #14

Workflow file for this run

name: CI Checks
on:
push:
branches: [ master, main ]
pull_request:
branches: [ master, main ]
workflow_dispatch:
permissions:
contents: read
concurrency:
group: ci-${{ github.ref }}
cancel-in-progress: true
jobs:
env_check:
name: Check for committed .env files
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- name: Fail if any tracked .env* files exist
shell: bash
run: |
if git ls-files -z | tr '\0' '\n' | grep -E '^\.env($|[^/]*)' >/dev/null; then
echo "::error::A tracked .env* file was found in the repository. Remove it and add '.env*' to .gitignore."
exit 1
else
echo "No tracked .env* files found."
fi