diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 0000000..219c13a --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,6 @@ +version: 2 +updates: + - package-ecosystem: "cargo" + directory: "/" + schedule: + interval: "daily" diff --git a/.github/workflows/rust.yml b/.github/workflows/rust.yml index 8dc9b51..dd2c42f 100644 --- a/.github/workflows/rust.yml +++ b/.github/workflows/rust.yml @@ -45,3 +45,13 @@ jobs: run: cargo build --verbose - name: Run tests run: cargo test --verbose + + + security_audit: + name: Run security audit + runs-on: ubuntu-latest + steps: + - uses: actions/checkout@v2 + - uses: actions-rs/audit-check@v1 + with: + token: ${{ secrets.GITHUB_TOKEN }}