use skip-editable for pip-audit to work around dependencies that are pinned to revisions

This commit is contained in:
Kenneth Kehl
2025-05-28 07:35:47 -07:00
parent f0739b5fcf
commit d526e0a54c

View File

@@ -128,8 +128,8 @@ freeze-requirements: ## Pin all requirements including sub dependencies into req
audit:
poetry requirements > requirements.txt
poetry requirements --dev > requirements_for_test.txt
poetry run pip-audit -r requirements.txt
poetry run pip-audit -r requirements_for_test.txt
poetry run pip-audit -r requirements.txt --skip-editable
poetry run pip-audit -r requirements_for_test.txt --skip-editable
.PHONY: static-scan
static-scan: