name: Security Audit
on:
push:
branches:
- master
paths:
- "**/Cargo.toml"
schedule:
- cron: "0 2 * * *"
permissions:
contents: read
jobs:
security-audit:
permissions:
checks: write contents: read issues: write runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- name: Install rust
uses: dtolnay/rust-toolchain@stable
- name: use stable rust
run: rustup override set stable
- name: Generate Cargo.lock
run: cargo generate-lockfile
- name: Audit Check
uses: rustsec/audit-check@master
with:
token: ${{ secrets.GITHUB_TOKEN }}