Skip to content

misc: add CI actions/dependency-review-action for security#7168

Merged
slorber merged 1 commit intomainfrom
slorber/deps-review-action
Apr 13, 2022
Merged

misc: add CI actions/dependency-review-action for security#7168
slorber merged 1 commit intomainfrom
slorber/deps-review-action

Conversation

@slorber
Copy link
Collaborator

@slorber slorber commented Apr 13, 2022

Motivation

Scan PR for potentially malicious deps upgrades

See https://github.blog/2022-04-06-prevent-introduction-known-vulnerabilities-into-your-code/

Have you read the Contributing Guidelines on pull requests?

yes

Test Plan

ci

Related PRs

#6984

@slorber slorber added the pr: maintenance This PR does not produce any behavior differences to end users when upgrading. label Apr 13, 2022
@facebook-github-bot facebook-github-bot added the CLA Signed Signed Facebook CLA label Apr 13, 2022
@netlify
Copy link

netlify bot commented Apr 13, 2022

[V2]

Name Link
🔨 Latest commit be51e91
🔍 Latest deploy log https://app.netlify.com/sites/docusaurus-2/deploys/6256ffcd669728000807f961
😎 Deploy Preview https://deploy-preview-7168--docusaurus-2.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site settings.

@github-actions
Copy link

⚡️ Lighthouse report for the changes in this PR:

Category Score
🟠 Performance 59
🟢 Accessibility 100
🟢 Best practices 92
🟢 SEO 100
🟢 PWA 90

Lighthouse ran on https://deploy-preview-7168--docusaurus-2.netlify.app/

@github-actions
Copy link

Size Change: 0 B

Total Size: 798 kB

ℹ️ View Unchanged
Filename Size
website/.docusaurus/globalData.json 50 kB
website/build/assets/css/styles.********.css 106 kB
website/build/assets/js/main.********.js 604 kB
website/build/index.html 38.6 kB

compressed-size-action

@slorber slorber merged commit 6306cbc into main Apr 13, 2022
@slorber slorber deleted the slorber/deps-review-action branch April 13, 2022 17:22
@naveensrinivasan
Copy link
Contributor

Cool!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

CLA Signed Signed Facebook CLA pr: maintenance This PR does not produce any behavior differences to end users when upgrading.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants