summaryrefslogtreecommitdiffhomepage
path: root/.github
diff options
context:
space:
mode:
authorAlbin <albin@mullvad.net>2025-02-04 08:30:14 +0100
committerAlbin <albin@mullvad.net>2025-02-04 08:30:14 +0100
commitdfa97420077bc15807cc460ad6b97053caa5fde0 (patch)
tree82e7cf53afd8453e3dad0077e4fd2cf6fc76d4ee /.github
parent8d8320b302a08613a2197ff81ef6e59f8c10301c (diff)
downloadmullvadvpn-dfa97420077bc15807cc460ad6b97053caa5fde0.tar.xz
mullvadvpn-dfa97420077bc15807cc460ad6b97053caa5fde0.zip
Remove OWASP dependency check plugin
The OWASP DependencyCheck plugin has been replaced with `osv-scanner` which covers our use-case.
Diffstat (limited to '.github')
-rw-r--r--.github/workflows/android-audit.yml21
1 files changed, 0 insertions, 21 deletions
diff --git a/.github/workflows/android-audit.yml b/.github/workflows/android-audit.yml
index d6e02ec48b..e949d62de9 100644
--- a/.github/workflows/android-audit.yml
+++ b/.github/workflows/android-audit.yml
@@ -5,8 +5,6 @@ on:
paths:
- .github/workflows/android-audit.yml
- android/gradle/verification-metadata.xml
- - android/config/dependency-check-suppression.xml
- - android/test/test-suppression.xml
- android/scripts/update-lockfile.sh
schedule:
# At 06:20 UTC every day.
@@ -45,25 +43,6 @@ jobs:
outputs:
container_image: ${{ env.inner_container_image }}
- owasp-dependency-check:
- needs: prepare
- runs-on: ubuntu-latest
- container:
- image: ${{ needs.prepare.outputs.container_image }}
- steps:
- # Fix for HOME path overridden by GH runners when building in containers, see:
- # https://github.com/actions/runner/issues/863
- - name: Fix HOME path
- run: echo "HOME=/root" >> $GITHUB_ENV
-
- - name: Set locale
- run: echo "LC_ALL=C.UTF-8" >> $GITHUB_ENV
-
- - uses: actions/checkout@v4
-
- - name: Run gradle audit task
- run: android/gradlew -p android dependencyCheckAnalyze
-
ensure-clean-lockfile:
needs: prepare
name: Ensure clean lockfile