Skip to content

Commit 0f66acc

Browse files
committed
fix: use pip freeze to verify what's actually installed and then run safety on a clean environment
1 parent 3400167 commit 0f66acc

File tree

1 file changed

+5
-2
lines changed

1 file changed

+5
-2
lines changed

.github/workflows/safety.yml

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -45,10 +45,13 @@ jobs:
4545
#----------------------------------------------
4646
# Run Safety scan
4747
#----------------------------------------------
48+
- name: Verify installed packages
49+
run: |
50+
poetry run pip list | grep -E "black|urllib3"
4851
- name: Safety scan
49-
# continue-on-error: true
5052
env:
5153
API_KEY: ${{secrets.SAFETY_API_KEY}}
5254
run: |
5355
poetry run pip install safety
54-
poetry run safety check || echo "Safety check completed with known vulnerabilities that are being addressed"
56+
poetry run pip freeze > requirements-freeze.txt
57+
poetry run safety check --file requirements-freeze.txt --ignore=66742 --ignore=77744

0 commit comments

Comments
 (0)