diff --git a/.github/workflows/audit_package.yml b/.github/workflows/audit_package.yml index d8cb815..59f0701 100644 --- a/.github/workflows/audit_package.yml +++ b/.github/workflows/audit_package.yml @@ -7,13 +7,23 @@ on: description: "Specify a base branch" required: false default: "main" + package_manager: + description: "Specify package manager (npm or yarn)" + required: false + default: "yarn" + + schedule: + - cron: "0 0 * * 1" jobs: audit-fix: - uses: step-security/reusable-workflows/.github/workflows/yarn_audit_fix.yml@v1 + uses: step-security/reusable-workflows/.github/workflows/audit_fix.yml@v1 with: - base_branch: ${{ inputs.base_branch }} + base_branch: ${{ inputs.base_branch || 'main' }} + package_manager: "yarn" permissions: contents: write pull-requests: write + packages: read + issues: write