Skip to content
代码片段 群组 项目
提交 be617d9a 编辑于 作者: David Dieulivol's avatar David Dieulivol
浏览文件

Merge branch 'remove-yarn-audit' into 'master'

No related branches found
No related tags found
无相关合并请求
...@@ -74,13 +74,6 @@ gemnasium-dependency_scanning: ...@@ -74,13 +74,6 @@ gemnasium-dependency_scanning:
gemnasium-python-dependency_scanning: gemnasium-python-dependency_scanning:
rules: !reference [".reports:rules:gemnasium-python-dependency_scanning", rules] rules: !reference [".reports:rules:gemnasium-python-dependency_scanning", rules]
yarn-audit-dependency_scanning:
extends: .ds-analyzer
image: "${REGISTRY_HOST}/${REGISTRY_GROUP}/security-products/analyzers/npm-audit:1"
variables:
TOOL: yarn
rules: !reference [".reports:rules:yarn-audit-dependency_scanning", rules]
# Analyze dependencies for malicious behavior # Analyze dependencies for malicious behavior
# See https://gitlab.com/gitlab-com/gl-security/security-research/package-hunter # See https://gitlab.com/gitlab-com/gl-security/security-research/package-hunter
.package_hunter-base: .package_hunter-base:
......
...@@ -2313,17 +2313,6 @@ ...@@ -2313,17 +2313,6 @@
- <<: *if-default-refs - <<: *if-default-refs
changes: *python-patterns changes: *python-patterns
.reports:rules:yarn-audit-dependency_scanning:
rules:
- <<: *if-merge-request-labels-pipeline-expedite
when: never
- if: '$DEPENDENCY_SCANNING_DISABLED || $GITLAB_FEATURES !~ /\bdependency_scanning\b/'
when: never
# Run Dependency Scanning on master until https://gitlab.com/gitlab-org/gitlab/-/issues/361657 is resolved
- <<: *if-default-branch-refs
- <<: *if-default-refs
changes: *nodejs-patterns
.reports:rules:test-dast: .reports:rules:test-dast:
rules: rules:
- <<: *if-merge-request-labels-pipeline-expedite - <<: *if-merge-request-labels-pipeline-expedite
......
0% 加载中 .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册