Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
67 commits
Select commit Hold shift + click to select a range
a66359b
build(deps): bump commander from 9.4.0 to 13.0.0
dependabot[bot] Jan 5, 2025
cadb891
build(deps): bump cli-progress from 3.11.2 to 3.12.0
dependabot[bot] Jan 5, 2025
95cc98c
build(deps-dev): bump husky from 8.0.1 to 9.1.7
dependabot[bot] Jan 5, 2025
81ae172
Merge pull request #9 from deadjdona/dependabot/npm_and_yarn/husky-9.1.7
deadjdona Jan 5, 2025
96b36c2
build(deps-dev): bump @commitlint/config-conventional
dependabot[bot] Jan 5, 2025
123fdc4
build(deps-dev): bump release-it from 15.3.0 to 15.11.0
dependabot[bot] Jan 5, 2025
65cca15
Merge pull request #10 from deadjdona/dependabot/npm_and_yarn/release…
deadjdona Jan 5, 2025
0c3d13d
build(deps): bump express from 4.18.1 to 4.21.2
dependabot[bot] Jan 5, 2025
4201763
build(deps): bump open from 8.4.0 to 10.1.0
dependabot[bot] Jan 5, 2025
c167cfc
build(deps-dev): bump nyc from 15.1.0 to 17.1.0
dependabot[bot] Jan 5, 2025
63c2267
Merge pull request #5 from deadjdona/dependabot/npm_and_yarn/commitli…
deadjdona Jan 5, 2025
afc67ee
Merge pull request #2 from deadjdona/dependabot/npm_and_yarn/express-…
deadjdona Jan 5, 2025
20049bf
Merge pull request #3 from deadjdona/dependabot/npm_and_yarn/commande…
deadjdona Jan 5, 2025
41d0720
Merge pull request #4 from deadjdona/dependabot/npm_and_yarn/cli-prog…
deadjdona Jan 5, 2025
e48bc71
Merge pull request #8 from deadjdona/dependabot/npm_and_yarn/open-10.1.0
deadjdona Jan 5, 2025
c01c854
Merge pull request #6 from deadjdona/dependabot/npm_and_yarn/nyc-17.1.0
deadjdona Jan 5, 2025
b7e22d5
build(deps-dev): bump @commitlint/cli from 17.0.3 to 19.6.1
dependabot[bot] Jan 5, 2025
02c7123
Merge pull request #1 from deadjdona/dependabot/npm_and_yarn/commitli…
deadjdona Jan 5, 2025
e684c3b
build(deps-dev): bump jasmine from 4.3.0 to 5.5.0
dependabot[bot] Jan 5, 2025
2980697
Merge pull request #7 from deadjdona/dependabot/npm_and_yarn/jasmine-…
deadjdona Jan 6, 2025
8c17608
build(deps): bump the npm_and_yarn group across 1 directory with 3 up…
dependabot[bot] Jan 6, 2025
e3f85ec
Merge pull request #16 from deadjdona/dependabot/npm_and_yarn/npm_and…
deadjdona Jan 6, 2025
5c4a477
build(deps): bump chrome-launcher from 0.15.1 to 1.1.2
dependabot[bot] Jan 6, 2025
c276978
Merge pull request #17 from deadjdona/dependabot/npm_and_yarn/chrome-…
deadjdona Jan 6, 2025
9325f79
build(deps): bump lighthouse from 9.6.6 to 12.3.0
dependabot[bot] Jan 6, 2025
696b4ef
Merge pull request #18 from deadjdona/dependabot/npm_and_yarn/lightho…
deadjdona Jan 6, 2025
ac7c690
build(deps): bump ws from 7.5.6 to 7.5.10 in the npm_and_yarn group
dependabot[bot] Jan 6, 2025
1290904
Merge pull request #19 from deadjdona/dependabot/npm_and_yarn/npm_and…
deadjdona Jan 6, 2025
d8dbd55
build(deps-dev): bump release-it and @release-it/conventional-changelog
dependabot[bot] Jan 10, 2025
2f6f944
Merge pull request #21 from deadjdona/dependabot/npm_and_yarn/multi-2…
deadjdona Jan 11, 2025
66465af
build(deps): bump commander from 13.0.0 to 13.1.0
dependabot[bot] Jan 21, 2025
55a5972
build(deps-dev): bump release-it from 18.1.1 to 18.1.2
dependabot[bot] Jan 24, 2025
a69d7fe
build(deps-dev): bump @commitlint/config-conventional
dependabot[bot] Feb 3, 2025
3263096
build(deps-dev): bump @commitlint/cli from 19.6.1 to 19.7.1
dependabot[bot] Feb 3, 2025
5f5535b
build(deps-dev): bump jasmine from 5.5.0 to 5.6.0
dependabot[bot] Feb 10, 2025
07a00c1
Merge pull request #25 from deadjdona/dependabot/npm_and_yarn/commitl…
deadjdona Feb 25, 2025
879285a
Merge pull request #24 from deadjdona/dependabot/npm_and_yarn/commitl…
deadjdona Feb 25, 2025
d230815
Merge pull request #22 from deadjdona/dependabot/npm_and_yarn/command…
deadjdona Feb 25, 2025
dae7c98
Merge pull request #23 from deadjdona/dependabot/npm_and_yarn/release…
deadjdona Feb 25, 2025
c9f2e55
Merge pull request #26 from deadjdona/dependabot/npm_and_yarn/jasmine…
deadjdona Feb 25, 2025
66f84df
build(deps): bump lighthouse from 12.3.0 to 12.4.0
dependabot[bot] Feb 27, 2025
7e6d3c6
build(deps-dev): bump @commitlint/cli from 19.7.1 to 19.8.0
dependabot[bot] Mar 10, 2025
5209768
build(deps-dev): bump @commitlint/config-conventional
dependabot[bot] Mar 10, 2025
30594e1
Merge pull request #27 from deadjdona/dependabot/npm_and_yarn/lightho…
deadjdona Mar 13, 2025
36f1524
Merge pull request #28 from deadjdona/dependabot/npm_and_yarn/commitl…
deadjdona Mar 13, 2025
32605fe
Merge pull request #29 from deadjdona/dependabot/npm_and_yarn/commitl…
deadjdona Mar 13, 2025
032bba9
build(deps): bump lighthouse from 12.4.0 to 12.5.1
dependabot[bot] Mar 27, 2025
cec2f95
build(deps): bump express from 4.21.2 to 5.1.0
dependabot[bot] Apr 1, 2025
e1f18b7
build(deps-dev): bump @release-it/conventional-changelog
dependabot[bot] Apr 18, 2025
7efa638
Merge pull request #32 from deadjdona/dependabot/npm_and_yarn/express…
deadjdona Apr 18, 2025
4e25af9
Merge pull request #31 from deadjdona/dependabot/npm_and_yarn/lightho…
deadjdona Apr 18, 2025
b7e22cb
Merge pull request #34 from deadjdona/dependabot/npm_and_yarn/release…
deadjdona Apr 18, 2025
c626ea4
build(deps-dev): bump release-it from 18.1.2 to 19.0.1
dependabot[bot] Apr 18, 2025
cc0da7b
Merge pull request #35 from deadjdona/dependabot/npm_and_yarn/release…
deadjdona Apr 24, 2025
81c0096
build(deps): bump lighthouse from 12.5.1 to 12.6.0
dependabot[bot] Apr 28, 2025
c0d3cc4
build(deps): bump open from 10.1.0 to 10.1.2
dependabot[bot] May 1, 2025
3403f56
build(deps-dev): bump jasmine from 5.6.0 to 5.7.1
dependabot[bot] May 2, 2025
4631f5c
Merge pull request #37 from deadjdona/dependabot/npm_and_yarn/lightho…
deadjdona May 2, 2025
270338d
Merge pull request #38 from deadjdona/dependabot/npm_and_yarn/open-10…
deadjdona May 2, 2025
e338f9b
Merge pull request #39 from deadjdona/dependabot/npm_and_yarn/jasmine…
deadjdona May 2, 2025
2f01bfe
Potential fix for code scanning alert no. 1: Workflow does not contai…
deadjdona May 2, 2025
bf42d57
Merge pull request #40 from deadjdona/alert-autofix-1
deadjdona May 2, 2025
2d19803
Create bearer.yml
deadjdona May 2, 2025
ede6299
Potential fix for code scanning alert no. 2: Workflow does not contai…
deadjdona May 2, 2025
71f7b98
Merge pull request #41 from deadjdona/alert-autofix-2
deadjdona May 2, 2025
6652531
Potential fix for code scanning alert no. 3: Workflow does not contai…
deadjdona May 2, 2025
04733f2
Merge pull request #42 from deadjdona/alert-autofix-3
deadjdona May 2, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
43 changes: 43 additions & 0 deletions .github/workflows/bearer.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,43 @@
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.
#
# This workflow file requires a free account on Bearer.com to manage findings, notifications and more.
# See https://docs.bearer.com/guides/bearer-cloud/
name: Bearer

on:
push:
branches: ["master" ]
pull_request:
# The branches below must be a subset of the branches above
branches: ["master"]
schedule:
- cron: '20 18 * * 3'

permissions:
contents: read # for actions/checkout to fetch code
security-events: write # for github/codeql-action/upload-sarif to upload SARIF results
actions: read # only required for a private repository by github/codeql-action/upload-sarif to get the Action run status

jobs:
bearer:
runs-on: ubuntu-latest
steps:
# Checkout project source
- uses: actions/checkout@v4
# Scan code using Bearer CLI
- name: Run Report
id: report
uses: bearer/bearer-action@828eeb928ce2f4a7ca5ed57fb8b59508cb8c79bc
with:
api-key: ${{ secrets.BEARER_TOKEN }}
format: sarif
output: results.sarif
exit-code: 0
# Upload SARIF file generated in previous step
- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: results.sarif
3 changes: 3 additions & 0 deletions .github/workflows/label.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,8 @@
name: Labeler
on: [pull_request_target]
permissions:
contents: read
pull-requests: write

jobs:
label:
Expand Down
3 changes: 3 additions & 0 deletions .github/workflows/nodejs.yml
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,9 @@ name: Node CI

on: [push]

permissions:
contents: read

jobs:
build:

Expand Down
5 changes: 5 additions & 0 deletions .github/workflows/stale.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,10 @@
name: Mark stale issues and pull requests

permissions:
contents: read
issues: write
pull-requests: write

on:
schedule:
- cron: "0 0 * * *"
Expand Down
Loading