Skip to content

Commit

Permalink
Review pre-commit pinned versions as prerelease step
Browse files Browse the repository at this point in the history
Because refreshing `pre-commit`'s pinned versions is the only supply
chain check for this repository, this patch also removes the nightly
supply chain review job.

Signed-off-by: Alex Nelson <[email protected]>
  • Loading branch information
ajnelson-nist committed Oct 25, 2023
1 parent b9bd578 commit 215c2d6
Show file tree
Hide file tree
Showing 2 changed files with 15 additions and 10 deletions.
Original file line number Diff line number Diff line change
@@ -1,22 +1,26 @@
# Portions of this file contributed by NIST are governed by the following
# statement:
#
# This software was developed at the National Institute of Standards
# and Technology by employees of the Federal Government in the course
# of their official duties. Pursuant to title 17 Section 105 of the
# United States Code this software is not subject to copyright
# protection and is in the public domain. NIST assumes no
# responsibility whatsoever for its use by other parties, and makes
# no guarantees, expressed or implied, about its quality,
# reliability, or any other characteristic.
# of their official duties. Pursuant to Title 17 Section 105 of the
# United States Code, this software is not subject to copyright
# protection within the United States. NIST assumes no responsibility
# whatsoever for its use by other parties, and makes no guarantees,
# expressed or implied, about its quality, reliability, or any other
# characteristic.
#
# We would appreciate acknowledgement if the software is used.

# This workflow uses Make to review direct dependencies of this
# repository.

name: Supply Chain
name: Prerelease

on:
schedule:
- cron: '15 5 * * 1,2,3,4,5'
pull_request:
branches:
- main

jobs:
build:
Expand All @@ -35,4 +39,4 @@ jobs:
with:
python-version: ${{ matrix.python-version }}
- name: Review dependencies
run: make check-supply-chain
run: make check-supply-chain-pre-commit
1 change: 1 addition & 0 deletions Makefile
Original file line number Diff line number Diff line change
Expand Up @@ -81,6 +81,7 @@ check: \
check-supply-chain: \
check-supply-chain-pre-commit

# This target is scheduled to run as part of prerelease review.
check-supply-chain-pre-commit: \
.venv-pre-commit/var/.pre-commit-built.log
source .venv-pre-commit/bin/activate \
Expand Down

0 comments on commit 215c2d6

Please sign in to comment.