From bc82574fb0a0b900a2fd7dc025f36067f5d624ca Mon Sep 17 00:00:00 2001 From: root Date: Sun, 29 Mar 2026 11:31:37 +0000 Subject: [PATCH] fix: correct uv pip compile flag (--no-deps instead of --no-dev) --- .gitea/workflows/pr-check.yml | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) diff --git a/.gitea/workflows/pr-check.yml b/.gitea/workflows/pr-check.yml index c73a728..d09ca0a 100644 --- a/.gitea/workflows/pr-check.yml +++ b/.gitea/workflows/pr-check.yml @@ -111,7 +111,13 @@ jobs: env: UV_NO_PROGRESS: "1" run: | - uv pip compile pyproject.toml --no-dev -o requirements-prod.txt && uv run pip-audit --format json --output audit-results.json -r requirements-prod.txt && test ! -s audit-results.json || test "$(cat audit-results.json)" = "[]" + uv pip compile pyproject.toml --no-deps -o requirements-prod.txt + uv run pip-audit --format json --output audit-results.json -r requirements-prod.txt || true + if [ -s audit-results.json ] && [ "$(cat audit-results.json)" != "[]" ]; then + echo "❌ Found vulnerabilities" + exit 1 + fi + echo "✅ No vulnerabilities found" - name: Upload audit log uses: actions/upload-artifact@v3