Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

misc: add CI actions/dependency-review-action for security #7168

Merged
merged 1 commit into from
Apr 13, 2022

Conversation

slorber
Copy link
Collaborator

@slorber slorber commented Apr 13, 2022

Motivation

Scan PR for potentially malicious deps upgrades

See https://github.blog/2022-04-06-prevent-introduction-known-vulnerabilities-into-your-code/

Have you read the Contributing Guidelines on pull requests?

yes

Test Plan

ci

Related PRs

#6984

@slorber slorber added the pr: maintenance This PR does not produce any behavior differences to end users when upgrading. label Apr 13, 2022
@facebook-github-bot facebook-github-bot added the CLA Signed Signed Facebook CLA label Apr 13, 2022
@netlify
Copy link

netlify bot commented Apr 13, 2022

[V2]

Name Link
🔨 Latest commit be51e91
🔍 Latest deploy log https://app.netlify.com/sites/docusaurus-2/deploys/6256ffcd669728000807f961
😎 Deploy Preview https://deploy-preview-7168--docusaurus-2.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site settings.

@github-actions
Copy link

⚡️ Lighthouse report for the changes in this PR:

Category Score
🟠 Performance 59
🟢 Accessibility 100
🟢 Best practices 92
🟢 SEO 100
🟢 PWA 90

Lighthouse ran on https://deploy-preview-7168--docusaurus-2.netlify.app/

@github-actions
Copy link

Size Change: 0 B

Total Size: 798 kB

ℹ️ View Unchanged
Filename Size
website/.docusaurus/globalData.json 50 kB
website/build/assets/css/styles.********.css 106 kB
website/build/assets/js/main.********.js 604 kB
website/build/index.html 38.6 kB

compressed-size-action

@slorber slorber merged commit 6306cbc into main Apr 13, 2022
@slorber slorber deleted the slorber/deps-review-action branch April 13, 2022 17:22
@naveensrinivasan
Copy link
Contributor

Cool!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
CLA Signed Signed Facebook CLA pr: maintenance This PR does not produce any behavior differences to end users when upgrading.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants