diff --git a/.github/workflows/audit-package.yml b/.github/workflows/audit-package.yml index c7a1801..a3745da 100644 --- a/.github/workflows/audit-package.yml +++ b/.github/workflows/audit-package.yml @@ -1,37 +1,32 @@ -name: Dependency Audit Fix Run +name: NPM Audit Fix Run on: workflow_dispatch: inputs: - package_manager: - required: false - default: "npm" force: description: "Use --force flag for npm audit fix?" - required: false + required: true type: boolean base_branch: + description: "Specify a base branch" required: false default: "main" - use_private_packages: - description: "Use private packages (default: false)" - required: false - type: boolean script: required: false default: "npm run test" - -permissions: - contents: write - pull-requests: write - packages: read + schedule: + - cron: "0 0 * * 1" jobs: audit-fix: uses: step-security/reusable-workflows/.github/workflows/audit_fix.yml@v1 with: - package_manager: ${{ inputs.package_manager }} - force: ${{ inputs.force }} - base_branch: ${{ inputs.base_branch }} - use_private_packages: ${{ inputs.use_private_packages }} - script: ${{ inputs.script }} \ No newline at end of file + force: ${{ inputs.force || false }} + base_branch: ${{ inputs.base_branch || 'main' }} + script: ${{ inputs.script || 'npm run test' }} + +permissions: + contents: write + pull-requests: write + packages: read + issues: write \ No newline at end of file