Skip to content

Routine vulnerability scan #43

Routine vulnerability scan

Routine vulnerability scan #43

name: Routine vulnerability scan
on:
schedule:
- cron: "30 12 * * *" # runs everyday at 12h30
jobs:
run-dagger-ci:
runs-on: ubuntu-22.04
steps:
- name: grab code
uses: actions/checkout@v4
- name: setup Python
uses: actions/setup-python@v5
with:
python-version: "3.10"
cache: pip
cache-dependency-path: docker/backend/project_requirements.txt
- name: setup poetry
uses: Gr1N/setup-poetry@v9
with:
poetry-version: "1.7.1"
- name: install code with dev dependencies
run: poetry install --with dev
- name: run security scanning
if: ${{ github.event.schedule }}
uses: dagger/dagger-for-github@v5
with:
verb: run
args: poetry run python tests/ci/main.py --with-security-scan
version: 0.9.9