Add Django check security scanning to Github Actions

This commit is contained in:
Neil Martinsen-Burrell 2022-10-04 14:58:54 -05:00
parent 88c32d9482
commit 9f861b3c11
No known key found for this signature in database
GPG key ID: 6A3C818CC10D0184

36
.github/workflows/security-check.yaml vendored Normal file
View file

@ -0,0 +1,36 @@
name: Django Security Check
on:
push:
branches:
- main
pull_request:
branches:
- main
env:
FAIL_LEVEL: WARNING
ENV_TYPE: pipenv
DEP_PATH: src/
APP_PATH: src/
EXTRA_ARGS: "--settings=registrar.config.settings"
DJANGO_SECRET_KEY: not-a-secret-jw7kQcb35fcDRIKp7K4fqZBmVvb+Sy4nkAGf44DxHi6EJl
DATABASE_URL: "postgres://not_a_user:not_a_password@not_a_host"
DJANGO_BASE_URL: "https://not_a_host"
jobs:
security-check:
runs-on: ubuntu-latest
steps:
- name: Check out
uses: actions/checkout@v3
- name: Scan Django settings for security issues
id: check
uses: victoriadrake/django-security-check@master
- name: Upload output
uses: actions/upload-artifact@v2
with:
name: security-check-output
path: output.txt