Skip to content

fix the js-yaml vulnerability and node-forge (#446) #90

fix the js-yaml vulnerability and node-forge (#446)

fix the js-yaml vulnerability and node-forge (#446) #90

# SPDX-FileCopyrightText: (C) 2025 Intel Corporation
# SPDX-License-Identifier: Apache-2.0
---
name: Post-Merge Cluster Orch
on:
push:
branches:
- main
- release-*
paths:
- 'apps/cluster-orch/**'
- 'package-lock.json'
workflow_dispatch:
permissions:
contents: read
jobs:
post-merge-pipeline:
permissions:
contents: read
security-events: write
id-token: write
uses: open-edge-platform/orch-ci/.github/workflows/post-merge.yml@0.1.66
with:
bootstrap_tools: "base,helm,yq,jq"
run_version_check: true
run_dep_version_check: false
run_build: false
run_docker_build: true
run_docker_push: true
run_helm_build: true
run_helm_push: true
run_version_tag: true
prefix_tag_separator: "/"
project_folder: apps/cluster-orch
orch_ci_repo_ref: main
run_version_dev: true
secrets:
SYS_ORCH_GITHUB: ${{ secrets.SYS_EMF_GH_TOKEN }}
NO_AUTH_ECR_PUSH_USERNAME: ${{ secrets.NO_AUTH_ECR_PUSH_USERNAME }}
NO_AUTH_ECR_PUSH_PASSWD: ${{ secrets.NO_AUTH_ECR_PUSH_PASSWD }}
MSTEAMS_WEBHOOK: ${{ secrets.TEAMS_WEBHOOK }}