From 08cd7e20bd7f11a403c4081594f59ab73e1ee0ee Mon Sep 17 00:00:00 2001 From: Jack Grigg Date: Tue, 23 Apr 2024 00:31:02 +0000 Subject: [PATCH] CI: Add audit check for `cargo vet` --- .github/workflows/audits.yml | 21 +++++++++++++++++++++ 1 file changed, 21 insertions(+) create mode 100644 .github/workflows/audits.yml diff --git a/.github/workflows/audits.yml b/.github/workflows/audits.yml new file mode 100644 index 000000000..327969b35 --- /dev/null +++ b/.github/workflows/audits.yml @@ -0,0 +1,21 @@ +name: Audits + +on: + pull_request: + push: + branches: main + +permissions: + contents: read + +jobs: + cargo-vet: + name: Vet Rust dependencies + runs-on: ubuntu-latest + steps: + - uses: actions/checkout@v4 + - uses: dtolnay/rust-toolchain@stable + id: toolchain + - run: rustup override set ${{steps.toolchain.outputs.name}} + - run: cargo install cargo-vet --version ~0.9 + - run: cargo vet --locked