Skip to content

Upgrade deps to latest (#744) #747

Upgrade deps to latest (#744)

Upgrade deps to latest (#744) #747

Workflow file for this run

name: Security Scan
on:
pull_request:
branches:
- develop
push:
branches:
- develop
tags:
- v*
jobs:
analyze:
name: Analyze
runs-on: ubuntu-latest
permissions:
actions: read
contents: read
security-events: write
strategy:
fail-fast: false
matrix:
language: ['javascript']
steps:
- name: Checkout repository
uses: actions/checkout@v3
- name: Initialize CodeQL
uses: github/codeql-action/init@v2
with:
languages: ${{ matrix.language }}
- name: Autobuild
uses: github/codeql-action/autobuild@v2
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v2
- name: NASA Scrub
run: |
pip install nasa-scrub
python3 -m scrub.tools.parsers.translate_results /home/runner/work/aerie-ui/results/*.sarif /home/runner/work/aerie-ui/results/codeql.scrub ${{ github.workspace }} scrub
python3 -m scrub.tools.parsers.csv_parser /home/runner/work/aerie-ui/results
- name: Upload Security Scan Results
uses: actions/upload-artifact@v3
with:
name: Security Scan Results
path: /home/runner/work/aerie-ui/results/*