mirror of
https://github.com/finos/SymphonyElectron.git
synced 2025-02-25 18:55:29 -06:00
use npm install instead of ci
This commit is contained in:
4
.github/workflows/cve-scanning-node.yml
vendored
4
.github/workflows/cve-scanning-node.yml
vendored
@@ -20,5 +20,7 @@ jobs:
|
||||
uses: actions/setup-node@v3
|
||||
with:
|
||||
node-version: ${{ matrix.node-version }}
|
||||
- run: npm ci --prod
|
||||
- run: npm config set package-lock false
|
||||
# TODO - this is ignoring package-lock.json
|
||||
- run: npm install --prod
|
||||
- run: npx --yes auditjs ossi --whitelist allow-list.json
|
Reference in New Issue
Block a user