fix: remove explicit shell
Some checks failed
SCA - pip-audit / pip-audit (push) Failing after 1m16s
Some checks failed
SCA - pip-audit / pip-audit (push) Failing after 1m16s
This commit is contained in:
parent
a7f4eecfa7
commit
d227d5cdf1
@ -9,30 +9,22 @@ on:
|
|||||||
jobs:
|
jobs:
|
||||||
pip-audit:
|
pip-audit:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
defaults:
|
|
||||||
run:
|
|
||||||
shell: bash
|
|
||||||
steps:
|
steps:
|
||||||
- name: Checkout code
|
- name: Checkout code
|
||||||
shell: bash
|
|
||||||
run: |
|
run: |
|
||||||
rm -rf repo
|
rm -rf repo
|
||||||
git clone https://oauth2:${{ secrets.GITEA_TOKEN }}@git.akarkode.com/${{ gitea.repository }}.git repo
|
git clone https://oauth2:${{ secrets.GITEA_TOKEN }}@git.akarkode.com/${{ gitea.repository }}.git repo
|
||||||
cd repo
|
cd repo && git checkout ${{ gitea.sha }}
|
||||||
git checkout ${{ gitea.sha }}
|
|
||||||
|
|
||||||
- name: Install pip-audit
|
- name: Install pip-audit
|
||||||
shell: bash
|
|
||||||
run: pip3 install pip-audit
|
run: pip3 install pip-audit
|
||||||
|
|
||||||
- name: Run pip-audit scan
|
- name: Run pip-audit scan
|
||||||
shell: bash
|
|
||||||
run: |
|
run: |
|
||||||
cd repo
|
cd repo
|
||||||
pip-audit -r Pipfile.lock || true
|
pip-audit -r Pipfile.lock || true
|
||||||
|
|
||||||
- name: Fail on HIGH/CRITICAL
|
- name: Fail on HIGH/CRITICAL
|
||||||
shell: bash
|
|
||||||
run: |
|
run: |
|
||||||
cd repo
|
cd repo
|
||||||
pip-audit -r Pipfile.lock --fail-on-severity high
|
pip-audit -r Pipfile.lock --fail-on-severity high
|
||||||
Loading…
Reference in New Issue
Block a user