-
Notifications
You must be signed in to change notification settings - Fork 1
41 lines (38 loc) · 1.07 KB
/
audit_package.yml
File metadata and controls
41 lines (38 loc) · 1.07 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
name: NPM Audit Fix Run
on:
workflow_dispatch:
inputs:
base_branch:
description: "Specify a base branch"
required: false
default: "main"
node_version:
description: "Specify Node.js version (e.g., '18', '20', 'lts/*')"
required: false
type: string
default: "24"
script:
description: "Specify the build script to run"
required: false
type: string
default: "yarn build"
package_manager:
description: "Package manager to use"
required: false
default: "yarn"
schedule:
- cron: "0 0 * * 1"
jobs:
audit-fix:
uses: step-security/reusable-workflows/.github/workflows/audit_fix.yml@v1
with:
force: ${{ inputs.force || false }}
base_branch: ${{ inputs.base_branch || 'main' }}
node_version: "${{ inputs.node_version || '24' }}"
script: "${{ inputs.script || 'yarn build' }}"
package_manager: ${{ inputs.package_manager || 'yarn' }}
permissions:
contents: write
pull-requests: write
packages: read
issues: write