Skip to content

chore(deps-dev): bump the commitlint group with 2 updates #271

chore(deps-dev): bump the commitlint group with 2 updates

chore(deps-dev): bump the commitlint group with 2 updates #271

name: Dependency Vulnerability Audit
on:
push:
branches: [main]
pull_request:
branches: [main]
paths-ignore:
- '**/*.md'
schedule:
# Run weekly on Mondays at 00:00 UTC
- cron: '0 0 * * 1'
workflow_dispatch:
permissions:
contents: read
jobs:
audit-main:
name: Audit Main Package
runs-on: ubuntu-latest
timeout-minutes: 5
steps:
- name: Checkout repository
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4
- name: Setup Node.js
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4
with:
node-version: '20'
cache: 'npm'
- name: Install dependencies
run: npm ci
- name: Run npm audit
run: npm audit --audit-level=high
audit-docs:
name: Audit Docs Site Package
runs-on: ubuntu-latest
timeout-minutes: 5
steps:
- name: Checkout repository
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4
- name: Setup Node.js
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4
with:
node-version: '20'
cache: 'npm'
cache-dependency-path: docs-site/package-lock.json
- name: Install dependencies
run: npm ci
working-directory: docs-site
- name: Run npm audit
run: npm audit --audit-level=high
working-directory: docs-site