ci(semgrep): scan SAST --severity=ERROR (FTD-28)
Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
This commit is contained in:
parent
39b633d1e3
commit
de69b3ff16
1 changed files with 4 additions and 0 deletions
4
.github/workflows/ci.yml
vendored
4
.github/workflows/ci.yml
vendored
|
|
@ -21,3 +21,7 @@ jobs:
|
||||||
- run: npm run typecheck
|
- run: npm run typecheck
|
||||||
- run: npm run test
|
- run: npm run test
|
||||||
- run: npm audit --audit-level=high
|
- run: npm audit --audit-level=high
|
||||||
|
- name: Install Semgrep
|
||||||
|
run: python3 -m pip install --user semgrep
|
||||||
|
- name: Semgrep scan
|
||||||
|
run: semgrep scan --config=auto --error --severity=ERROR
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue