Skip to content

chore(deps): bump postcss from 8.5.8 to 8.5.12 in /apps/webui #89

chore(deps): bump postcss from 8.5.8 to 8.5.12 in /apps/webui

chore(deps): bump postcss from 8.5.8 to 8.5.12 in /apps/webui #89

name: dependency-review
on:
pull_request:
types: [opened, synchronize, reopened, ready_for_review]
permissions:
contents: read
pull-requests: read
concurrency:
group: dependency-review-${{ github.workflow }}-${{ github.ref }}-${{ github.event_name }}
cancel-in-progress: true
jobs:
dependency-review:
timeout-minutes: 10
runs-on: ubuntu-latest
env:
GH_TOKEN: ${{ github.token }}
steps:
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5
with:
clean: true
- id: support
name: Detect dependency review support
run: |
set -euo pipefail
if gh api "repos/${{ github.repository }}/dependency-graph/sbom" --silent >/dev/null 2>&1; then
echo "supported=true" >> "$GITHUB_OUTPUT"
exit 0
fi
echo "supported=false" >> "$GITHUB_OUTPUT"
echo "dependency-review: dependency graph support unavailable for this repository; skip"
- name: Dependency review skipped
if: steps.support.outputs.supported != 'true'
run: |
echo "dependency-review: skipped because dependency graph support is unavailable"
- name: Dependency review
if: steps.support.outputs.supported == 'true'
uses: actions/dependency-review-action@2031cfc080254a8a887f58cffee85186f0e49e48
with:
fail-on-severity: high
retry-on-snapshot-warnings: true
retry-on-snapshot-warnings-timeout: 180