forked from oke-py/npm-audit-action
-
Notifications
You must be signed in to change notification settings - Fork 1
/
action.yml
61 lines (61 loc) · 1.69 KB
/
action.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
name: 'yarn npm audit action'
description: 'run yarn npm audit'
author: 'basal-luke <luke@basal.dev>'
inputs:
severity_level:
description: 'The value of `--severity` flag'
default: low
required: false
create_issues:
description: 'Flag to create issues when vulnerabilities are found'
default: 'true'
required: false
create_pr_comments:
description: 'Flag to create pr comments when vulnerabilities are found'
default: 'true'
required: false
dedupe_issues:
description: 'Flag to de-dupe against open issues'
default: 'false'
required: false
github_context:
description: 'The `github` context'
default: ${{ toJson(github) }}
required: false
github_token:
description: 'GitHub Access Token.'
required: true
issue_assignees:
description: 'Issue assignees (separated by commma)'
required: false
issue_labels:
description: 'Issue labels (separated by commma)'
required: false
issue_title:
description: 'Issue title'
default: 'npm audit found vulnerabilities'
required: false
json_flag:
description: 'Run `yarn npm audit` with `--json`'
default: 'false'
required: false
production_flag:
description: 'Run `yarn npm audit` with `--environment=production`'
default: 'false'
required: false
recursive_flag:
description: 'Run `yarn npm audit` with `--recursive`'
default: 'false'
required: false
working_directory:
description: 'The directory which contains package.json'
required: false
outputs:
npm_audit:
description: 'The output of the npm audit report in a text format'
runs:
using: 'node16'
main: 'dist/index.js'
branding:
icon: 'search'
color: 'orange'