diff --git a/.github/workflows/pr.yaml b/.github/workflows/pr.yaml index e45cb1c..8c8bade 100644 --- a/.github/workflows/pr.yaml +++ b/.github/workflows/pr.yaml @@ -3,7 +3,7 @@ name: PR Check on: pull_request: branches: - - main + - master path: - 'UI/**' @@ -42,10 +42,10 @@ jobs: needs: lint steps: - - uses: actions/checkout@v4 + - uses: actions/checkout@v3 - name: Set up Python - uses: actions/setup-python@v5 + uses: actions/setup-python@v4 with: python-version: '3.11' @@ -54,8 +54,10 @@ jobs: pip install bandit safety - name: Run Bandit security scan - run: bandit -r . - - - name: Run Safety vulnerability check - run: safety check --file=requirements.txt --full-report + run: bandit -r UI/ + - name: Run Safety scan + uses: pyupio/safety-action@v1 + with: + api-key: ${{ secrets.SAFETY_API_KEY }} + args: --file=UI/requirements.txt --full-report diff --git a/UI/requirements.txt b/UI/requirements.txt new file mode 100644 index 0000000..9f8bddc --- /dev/null +++ b/UI/requirements.txt @@ -0,0 +1,13 @@ +cfgv==3.4.0 +distlib==0.4.0 +filelock==3.19.1 +identify==2.6.14 +nodeenv==1.9.1 +platformdirs==4.4.0 +pre_commit==4.3.0 +PySide6==6.9.2 +PySide6_Addons==6.9.2 +PySide6_Essentials==6.9.2 +PyYAML==6.0.2 +shiboken6==6.9.2 +virtualenv==20.34.0