Skip to content

Commit

Permalink
chore: add audit check (#2595)
Browse files Browse the repository at this point in the history
  • Loading branch information
RadicalZephyr committed Jul 21, 2020
1 parent 14723f9 commit cbb4abc
Show file tree
Hide file tree
Showing 2 changed files with 54 additions and 0 deletions.
22 changes: 22 additions & 0 deletions .github/workflows/audit.yml
@@ -0,0 +1,22 @@
name: Security Audit

on:
push:
branches:
- master
paths:
- '**/Cargo.toml'
schedule:
- cron: '0 2 * * *' # run at 2 AM UTC

jobs:
security-audit:
runs-on: ubuntu-latest
if: "!contains(github.event.head_commit.message, 'ci skip')"
steps:
- uses: actions/checkout@v2

- name: Audit Check
uses: actions-rs/audit-check@v1
with:
token: ${{ secrets.GITHUB_TOKEN }}
32 changes: 32 additions & 0 deletions .github/workflows/pr-audit.yml
@@ -0,0 +1,32 @@
name: Pull Request Security Audit

on:
push:
paths:
- '**/Cargo.toml'
pull_request:
paths:
- '**/Cargo.toml'

jobs:
security-audit:
runs-on: ubuntu-latest
if: "!contains(github.event.head_commit.message, 'ci skip')"
steps:
- uses: actions/checkout@v2

- name: Install cargo-audit
uses: actions-rs/cargo@v1
with:
command: install
args: cargo-audit

- name: Generate lockfile
uses: actions-rs/cargo@v1
with:
command: generate-lockfile

- name: Audit dependencies
uses: actions-rs/cargo@v1
with:
command: audit

0 comments on commit cbb4abc

Please sign in to comment.