Commit Graph

224 Commits

Author SHA1 Message Date
Kenneth Kehl
57f98b1507 cleanup 2025-06-04 08:03:01 -07:00
Carlo Costino
8af59b1c55 Update daily checks to match PR checks
This changeset adds the same additional steps needed in our PR checks to make sure the daily checks work properly with the recent Poetry update.  It also updates our PR checks to use the latest pip-audit GitHub action.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-06-02 09:23:02 -04:00
Carlo Costino
cf4deb083b Remove extra vulnerability from our ignore list
This changeset fixes an oversight where a vulnerability got added back to our ignore list.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-05-30 16:28:03 -04:00
Kenneth Kehl
3b5f11932f ugh secrets 2025-05-29 10:15:58 -07:00
Kenneth Kehl
59af82b0a4 merge from main 2025-05-29 08:05:46 -07:00
Carlo Costino
55e24a611a Updated pip-audit ignore-vulns
This changeset updates the PYSEC notices to ignore to due versions that either cannot be fixed or are false positives.  Specifically, this changeset removes previously ignored vulnerability reports and adds PYSEC-2023-312 to the list because it is a false positive and refers to Redis itself, not the Python Redis client (see https://github.com/pypa/advisory-database/issues/237 for details).

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-05-28 17:43:50 -04:00
Kenneth Kehl
1287be143c filter requirements text 2025-05-28 08:57:49 -07:00
Kenneth Kehl
976027d52f filter requirements text 2025-05-28 08:54:59 -07:00
Kenneth Kehl
bf9f01e526 filter requirements text 2025-05-28 08:40:17 -07:00
Kenneth Kehl
ca5b0b2230 filter requirements text 2025-05-28 08:33:55 -07:00
Kenneth Kehl
3c02ad92bb filter requirements text 2025-05-28 08:29:31 -07:00
Kenneth Kehl
87d29de41d filter requirements text 2025-05-28 08:16:38 -07:00
Kenneth Kehl
22a0d9e287 upgrade poetry 2025-05-27 14:14:44 -07:00
Kenneth Kehl
c6df1ace1b fix static scan warnings 2025-04-01 09:26:22 -07:00
Kenneth Kehl
14f955ce97 add remaining vars 2025-03-21 09:37:14 -07:00
Kenneth Kehl
e535934d60 add remaining vars 2025-03-21 07:19:27 -07:00
Kenneth Kehl
dee0f7dc2d ugh revert and fix 2025-03-20 13:48:25 -07:00
Kenneth Kehl
73e40b91cb ugh revert and fix 2025-03-20 13:04:01 -07:00
Kenneth Kehl
361bde5480 ugh revert and fix 2025-03-20 12:27:14 -07:00
Kenneth Kehl
7fda440463 ugh revert and fix 2025-03-20 11:57:46 -07:00
Kenneth Kehl
6e78caddc5 ugh revert and fix 2025-03-20 11:46:01 -07:00
Kenneth Kehl
a99c2fe13d ugh revert and fix 2025-03-20 11:09:52 -07:00
Kenneth Kehl
c490ec5b70 ugh revert and fix 2025-03-20 10:31:14 -07:00
Kenneth Kehl
6128fc9fdb ugh revert and fix 2025-03-20 09:58:27 -07:00
Kenneth Kehl
1c53c1dac2 ugh revert and fix 2025-03-20 09:44:10 -07:00
Kenneth Kehl
568dde2792 ugh revert and fix 2025-03-20 09:04:22 -07:00
Kenneth Kehl
a14b95bbd7 ugh revert and fix 2025-03-19 15:05:29 -07:00
Kenneth Kehl
be026d3307 do a manifest.yml push to load new env variables 2025-03-19 10:43:56 -07:00
Kenneth Kehl
f34020c9ee do a manifest.yml push to load new env variables 2025-03-19 10:30:24 -07:00
Kenneth Kehl
2855eac024 do a manifest.yml push to load new env variables 2025-03-19 09:11:47 -07:00
Kenneth Kehl
3711851b7f fix update-templates 2025-03-18 12:00:13 -07:00
Kenneth Kehl
f1691274c8 fix update-templates 2025-03-18 11:19:08 -07:00
Kenneth Kehl
a1b220d239 comment out update templates 2025-03-17 15:56:06 -07:00
Kenneth Kehl
90d71299d5 initial 2025-03-17 09:45:23 -07:00
Kenneth Kehl
458f1d7794 remove automerge script 2025-03-13 13:43:51 -07:00
Kenneth Kehl
ab6a956766 use hmarr autoapprove action 2025-03-13 08:46:48 -07:00
Kenneth Kehl
048f16155e fix typo 2025-03-12 14:42:20 -07:00
Kenneth Kehl
0fa74664cf fix indent problem 2025-03-12 14:03:29 -07:00
Kenneth Kehl
2c76d267c6 use --admin flag to bypass approvals 2025-03-12 13:13:49 -07:00
Kenneth Kehl
aede24b14d initial 2025-03-12 12:26:35 -07:00
Carlo Costino
00e6e560fa Fix up Terraform installation and get back to latest changed file check
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-02-19 21:36:51 -05:00
Carlo Costino
76ff8c11e9 Try installing Terraform directly per GitHub Action issue
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-02-19 21:26:45 -05:00
Carlo Costino
1de2c8081b Update Terraform config and revert staging deploy change
This changeset updates the Terraform user configuration in several environments to factor in team member changes, and reverts the previous change to the staging deploy to see if there was an issue with the last update which is preventing the workflow from running now.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-02-19 18:21:57 -05:00
Carlo Costino
87c4429055 Update GitHub Action References
This changeset updates many of our GitHub Action references to point to the latest versions to ensure they are kept up-to-date.  This helps address any improvements and security patches that have been made to them.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-02-19 16:42:34 -05:00
Carlo Costino
0e3e305bfe Update daily checks reference as well.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-01-31 11:07:26 -05:00
Carlo Costino
b119457a47 Update zaproxy-api-scan reference
This changeset updates our GitHub Action for dynamic scans to use the latest release of the zaproxy-api-scan.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-01-31 10:55:33 -05:00
Kenneth Kehl
49f4129e5b add tada to makefile 2025-01-23 13:41:13 -08:00
Kenneth Kehl
a5a9522056 automate formatting and import sorting 2025-01-23 10:26:11 -08:00
Carlo Costino
1c67478d5e Update daily_check GitHub Action
This changeset updates the reference of the upload_artifacts action from GitHub to be v4 instead of v3. v3 is being deprecated at the end of January 2025.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-01-07 15:27:05 -05:00
Carlo Costino
55f538b10f Update Restage workflow to use latest cg-cli-tools
This changeset updates our restage workflow and GitHub action to use the latest version of the cg-cli-tools to help prevent future issues with performing restage actions for our apps.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2024-12-03 17:28:36 -05:00