Skip to content

Commit 8ea7003

Browse files
Merge pull request #69 from step-security/fix_Audit-Fix-Workflow
fixed audit fix workflow
2 parents f7b0b80 + d4bf84e commit 8ea7003

File tree

1 file changed

+14
-19
lines changed

1 file changed

+14
-19
lines changed

.github/workflows/audit-package.yml

Lines changed: 14 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -1,37 +1,32 @@
1-
name: Dependency Audit Fix Run
1+
name: NPM Audit Fix Run
22

33
on:
44
workflow_dispatch:
55
inputs:
6-
package_manager:
7-
required: false
8-
default: "npm"
96
force:
107
description: "Use --force flag for npm audit fix?"
11-
required: false
8+
required: true
129
type: boolean
1310
base_branch:
11+
description: "Specify a base branch"
1412
required: false
1513
default: "main"
16-
use_private_packages:
17-
description: "Use private packages (default: false)"
18-
required: false
19-
type: boolean
2014
script:
2115
required: false
2216
default: "npm run test"
23-
24-
permissions:
25-
contents: write
26-
pull-requests: write
27-
packages: read
17+
schedule:
18+
- cron: "0 0 * * 1"
2819

2920
jobs:
3021
audit-fix:
3122
uses: step-security/reusable-workflows/.github/workflows/audit_fix.yml@v1
3223
with:
33-
package_manager: ${{ inputs.package_manager }}
34-
force: ${{ inputs.force }}
35-
base_branch: ${{ inputs.base_branch }}
36-
use_private_packages: ${{ inputs.use_private_packages }}
37-
script: ${{ inputs.script }}
24+
force: ${{ inputs.force || false }}
25+
base_branch: ${{ inputs.base_branch || 'main' }}
26+
script: ${{ inputs.script || 'npm run test' }}
27+
28+
permissions:
29+
contents: write
30+
pull-requests: write
31+
packages: read
32+
issues: write

0 commit comments

Comments
 (0)