Skip to content

Commit 832563f

Browse files
authored
Merge pull request #13 from step-security/npm-audit-fix-force
fix: Security updates
2 parents 1419af5 + fbdc3b3 commit 832563f

File tree

5 files changed

+60
-1990
lines changed

5 files changed

+60
-1990
lines changed

.github/workflows/codeql.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -9,16 +9,16 @@
99
# the `language` matrix defined below to confirm you have the correct set of
1010
# supported CodeQL languages.
1111
#
12-
name: "CodeQL"
12+
name: 'CodeQL'
1313

1414
on:
1515
push:
16-
branches: ["main"]
16+
branches: ['main']
1717
pull_request:
1818
# The branches below must be a subset of the branches above
19-
branches: ["main"]
19+
branches: ['main']
2020
schedule:
21-
- cron: "0 0 * * 1"
21+
- cron: '0 0 * * 1'
2222

2323
permissions:
2424
contents: read
@@ -35,7 +35,7 @@ jobs:
3535
strategy:
3636
fail-fast: false
3737
matrix:
38-
language: ["javascript", "typescript"]
38+
language: ['javascript', 'typescript']
3939
# CodeQL supports [ $supported-codeql-languages ]
4040
# Learn more about CodeQL language support at https://aka.ms/codeql-docs/language-support
4141

@@ -75,4 +75,4 @@ jobs:
7575
- name: Perform CodeQL Analysis
7676
uses: github/codeql-action/analyze@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17
7777
with:
78-
category: "/language:${{matrix.language}}"
78+
category: '/language:${{matrix.language}}'

.github/workflows/scorecards.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -12,7 +12,7 @@ on:
1212
schedule:
1313
- cron: '20 7 * * 2'
1414
push:
15-
branches: ["main"]
15+
branches: ['main']
1616

1717
# Declare default permissions as read only.
1818
permissions: read-all
@@ -40,12 +40,12 @@ jobs:
4040
with:
4141
egress-policy: audit
4242

43-
- name: "Checkout code"
43+
- name: 'Checkout code'
4444
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
4545
with:
4646
persist-credentials: false
4747

48-
- name: "Run analysis"
48+
- name: 'Run analysis'
4949
uses: ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
5050
with:
5151
results_file: results.sarif
@@ -67,15 +67,15 @@ jobs:
6767

6868
# Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
6969
# format to the repository Actions tab.
70-
- name: "Upload artifact"
70+
- name: 'Upload artifact'
7171
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
7272
with:
7373
name: SARIF file
7474
path: results.sarif
7575
retention-days: 5
7676

7777
# Upload the results to GitHub's code scanning dashboard.
78-
- name: "Upload to code-scanning"
78+
- name: 'Upload to code-scanning'
7979
uses: github/codeql-action/upload-sarif@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17
8080
with:
8181
sarif_file: results.sarif

badges/coverage.svg

Lines changed: 1 addition & 1 deletion
Loading

0 commit comments

Comments
 (0)