Update dist
This commit is contained in:
+159
-56
@@ -22,13 +22,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
||||||
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
||||||
return new (P || (P = Promise))(function (resolve, reject) {
|
return new (P || (P = Promise))(function (resolve, reject) {
|
||||||
@@ -46,7 +56,8 @@ var __asyncValues = (this && this.__asyncValues) || function (o) {
|
|||||||
function settle(resolve, reject, d, v) { Promise.resolve(v).then(function(v) { resolve({ value: v, done: d }); }, reject); }
|
function settle(resolve, reject, d, v) { Promise.resolve(v).then(function(v) { resolve({ value: v, done: d }); }, reject); }
|
||||||
};
|
};
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.commentPr = exports.MAX_COMMENT_LENGTH = void 0;
|
exports.MAX_COMMENT_LENGTH = void 0;
|
||||||
|
exports.commentPr = commentPr;
|
||||||
const github = __importStar(__nccwpck_require__(3228));
|
const github = __importStar(__nccwpck_require__(3228));
|
||||||
const core = __importStar(__nccwpck_require__(7484));
|
const core = __importStar(__nccwpck_require__(7484));
|
||||||
const githubUtils = __importStar(__nccwpck_require__(8006));
|
const githubUtils = __importStar(__nccwpck_require__(8006));
|
||||||
@@ -102,7 +113,6 @@ function commentPr(commentContent, config, issueFound) {
|
|||||||
}
|
}
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
exports.commentPr = commentPr;
|
|
||||||
function findCommentByMarker(commentBodyIncludes) {
|
function findCommentByMarker(commentBodyIncludes) {
|
||||||
return __awaiter(this, void 0, void 0, function* () {
|
return __awaiter(this, void 0, void 0, function* () {
|
||||||
var _a, e_1, _b, _c;
|
var _a, e_1, _b, _c;
|
||||||
@@ -158,13 +168,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
||||||
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
||||||
return new (P || (P = Promise))(function (resolve, reject) {
|
return new (P || (P = Promise))(function (resolve, reject) {
|
||||||
@@ -175,7 +195,8 @@ var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, ge
|
|||||||
});
|
});
|
||||||
};
|
};
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.getNamespace = exports.getDeniedChanges = void 0;
|
exports.getNamespace = void 0;
|
||||||
|
exports.getDeniedChanges = getDeniedChanges;
|
||||||
const core = __importStar(__nccwpck_require__(7484));
|
const core = __importStar(__nccwpck_require__(7484));
|
||||||
const purl_1 = __nccwpck_require__(7963);
|
const purl_1 = __nccwpck_require__(7963);
|
||||||
function getDeniedChanges(changes_1) {
|
function getDeniedChanges(changes_1) {
|
||||||
@@ -204,7 +225,6 @@ function getDeniedChanges(changes_1) {
|
|||||||
return changesDenied;
|
return changesDenied;
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
exports.getDeniedChanges = getDeniedChanges;
|
|
||||||
const getNamespace = (change) => {
|
const getNamespace = (change) => {
|
||||||
if (change.package_url) {
|
if (change.package_url) {
|
||||||
return (0, purl_1.parsePURL)(change.package_url).namespace;
|
return (0, purl_1.parsePURL)(change.package_url).namespace;
|
||||||
@@ -241,13 +261,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
||||||
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
||||||
return new (P || (P = Promise))(function (resolve, reject) {
|
return new (P || (P = Promise))(function (resolve, reject) {
|
||||||
@@ -258,7 +288,7 @@ var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, ge
|
|||||||
});
|
});
|
||||||
};
|
};
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.compare = void 0;
|
exports.compare = compare;
|
||||||
const core = __importStar(__nccwpck_require__(7484));
|
const core = __importStar(__nccwpck_require__(7484));
|
||||||
const githubUtils = __importStar(__nccwpck_require__(8006));
|
const githubUtils = __importStar(__nccwpck_require__(8006));
|
||||||
const retry = __importStar(__nccwpck_require__(3450));
|
const retry = __importStar(__nccwpck_require__(3450));
|
||||||
@@ -289,7 +319,6 @@ function compare(_a) {
|
|||||||
});
|
});
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
exports.compare = compare;
|
|
||||||
|
|
||||||
|
|
||||||
/***/ }),
|
/***/ }),
|
||||||
@@ -300,7 +329,7 @@ exports.compare = compare;
|
|||||||
"use strict";
|
"use strict";
|
||||||
|
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.getRefs = void 0;
|
exports.getRefs = getRefs;
|
||||||
const schemas_1 = __nccwpck_require__(3312);
|
const schemas_1 = __nccwpck_require__(3312);
|
||||||
function getRefs(config, context) {
|
function getRefs(config, context) {
|
||||||
let base_ref = config.base_ref;
|
let base_ref = config.base_ref;
|
||||||
@@ -340,7 +369,6 @@ function getRefs(config, context) {
|
|||||||
head: head_ref
|
head: head_ref
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
exports.getRefs = getRefs;
|
|
||||||
|
|
||||||
|
|
||||||
/***/ }),
|
/***/ }),
|
||||||
@@ -366,13 +394,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
||||||
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
||||||
return new (P || (P = Promise))(function (resolve, reject) {
|
return new (P || (P = Promise))(function (resolve, reject) {
|
||||||
@@ -383,7 +421,7 @@ var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, ge
|
|||||||
});
|
});
|
||||||
};
|
};
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.getInvalidLicenseChanges = void 0;
|
exports.getInvalidLicenseChanges = getInvalidLicenseChanges;
|
||||||
const utils_1 = __nccwpck_require__(9277);
|
const utils_1 = __nccwpck_require__(9277);
|
||||||
const purl_1 = __nccwpck_require__(7963);
|
const purl_1 = __nccwpck_require__(7963);
|
||||||
const spdx = __importStar(__nccwpck_require__(2593));
|
const spdx = __importStar(__nccwpck_require__(2593));
|
||||||
@@ -450,7 +488,6 @@ function getInvalidLicenseChanges(changes, licenses) {
|
|||||||
return invalidLicenseChanges;
|
return invalidLicenseChanges;
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
exports.getInvalidLicenseChanges = getInvalidLicenseChanges;
|
|
||||||
const fetchGHLicense = (owner, repo) => __awaiter(void 0, void 0, void 0, function* () {
|
const fetchGHLicense = (owner, repo) => __awaiter(void 0, void 0, void 0, function* () {
|
||||||
var _a, _b;
|
var _a, _b;
|
||||||
try {
|
try {
|
||||||
@@ -587,13 +624,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
||||||
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
||||||
return new (P || (P = Promise))(function (resolve, reject) {
|
return new (P || (P = Promise))(function (resolve, reject) {
|
||||||
@@ -941,15 +988,26 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.parsePURL = exports.PurlSchema = void 0;
|
exports.PurlSchema = void 0;
|
||||||
|
exports.parsePURL = parsePURL;
|
||||||
const z = __importStar(__nccwpck_require__(4809));
|
const z = __importStar(__nccwpck_require__(4809));
|
||||||
// the basic purl type, containing type, namespace, name, and version.
|
// the basic purl type, containing type, namespace, name, and version.
|
||||||
// other than type, all fields are nullable. this is for maximum flexibility
|
// other than type, all fields are nullable. this is for maximum flexibility
|
||||||
@@ -1017,7 +1075,6 @@ function parsePURL(purl) {
|
|||||||
// we don't parse subpath or attributes, so we're done here
|
// we don't parse subpath or attributes, so we're done here
|
||||||
return result;
|
return result;
|
||||||
}
|
}
|
||||||
exports.parsePURL = parsePURL;
|
|
||||||
|
|
||||||
|
|
||||||
/***/ }),
|
/***/ }),
|
||||||
@@ -1043,13 +1100,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.ScorecardSchema = exports.ScorecardApiSchema = exports.ComparisonResponseSchema = exports.ChangesSchema = exports.ConfigurationOptionsSchema = exports.MergeGroupSchema = exports.PullRequestSchema = exports.ChangeSchema = exports.SeveritySchema = exports.SCOPES = exports.SEVERITIES = void 0;
|
exports.ScorecardSchema = exports.ScorecardApiSchema = exports.ComparisonResponseSchema = exports.ChangesSchema = exports.ConfigurationOptionsSchema = exports.MergeGroupSchema = exports.PullRequestSchema = exports.ChangeSchema = exports.SeveritySchema = exports.SCOPES = exports.SEVERITIES = void 0;
|
||||||
const z = __importStar(__nccwpck_require__(4809));
|
const z = __importStar(__nccwpck_require__(4809));
|
||||||
@@ -1260,13 +1327,23 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, generator) {
|
||||||
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
function adopt(value) { return value instanceof P ? value : new P(function (resolve) { resolve(value); }); }
|
||||||
return new (P || (P = Promise))(function (resolve, reject) {
|
return new (P || (P = Promise))(function (resolve, reject) {
|
||||||
@@ -1277,7 +1354,8 @@ var __awaiter = (this && this.__awaiter) || function (thisArg, _arguments, P, ge
|
|||||||
});
|
});
|
||||||
};
|
};
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.getProjectUrl = exports.getScorecardLevels = void 0;
|
exports.getScorecardLevels = getScorecardLevels;
|
||||||
|
exports.getProjectUrl = getProjectUrl;
|
||||||
const core = __importStar(__nccwpck_require__(7484));
|
const core = __importStar(__nccwpck_require__(7484));
|
||||||
function getScorecardLevels(changes) {
|
function getScorecardLevels(changes) {
|
||||||
return __awaiter(this, void 0, void 0, function* () {
|
return __awaiter(this, void 0, void 0, function* () {
|
||||||
@@ -1322,7 +1400,6 @@ function getScorecardLevels(changes) {
|
|||||||
return data;
|
return data;
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
exports.getScorecardLevels = getScorecardLevels;
|
|
||||||
function getScorecard(repositoryUrl) {
|
function getScorecard(repositoryUrl) {
|
||||||
return __awaiter(this, void 0, void 0, function* () {
|
return __awaiter(this, void 0, void 0, function* () {
|
||||||
const apiRoot = 'https://api.securityscorecards.dev';
|
const apiRoot = 'https://api.securityscorecards.dev';
|
||||||
@@ -1353,7 +1430,6 @@ function getProjectUrl(ecosystem, packageName, version) {
|
|||||||
return '';
|
return '';
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
exports.getProjectUrl = getProjectUrl;
|
|
||||||
|
|
||||||
|
|
||||||
/***/ }),
|
/***/ }),
|
||||||
@@ -1379,18 +1455,32 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
var __importDefault = (this && this.__importDefault) || function (mod) {
|
var __importDefault = (this && this.__importDefault) || function (mod) {
|
||||||
return (mod && mod.__esModule) ? mod : { "default": mod };
|
return (mod && mod.__esModule) ? mod : { "default": mod };
|
||||||
};
|
};
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.cleanInvalidSPDX = exports.isValid = exports.satisfiesAll = exports.satisfiesAny = exports.satisfies = void 0;
|
exports.satisfies = satisfies;
|
||||||
|
exports.satisfiesAny = satisfiesAny;
|
||||||
|
exports.satisfiesAll = satisfiesAll;
|
||||||
|
exports.isValid = isValid;
|
||||||
|
exports.cleanInvalidSPDX = cleanInvalidSPDX;
|
||||||
const spdxlib = __importStar(__nccwpck_require__(1452));
|
const spdxlib = __importStar(__nccwpck_require__(1452));
|
||||||
const spdx_satisfies_1 = __importDefault(__nccwpck_require__(5131));
|
const spdx_satisfies_1 = __importDefault(__nccwpck_require__(5131));
|
||||||
const spdx_expression_parse_1 = __importDefault(__nccwpck_require__(3326));
|
const spdx_expression_parse_1 = __importDefault(__nccwpck_require__(3326));
|
||||||
@@ -1411,7 +1501,6 @@ function satisfies(candidateExpr, allowList) {
|
|||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.satisfies = satisfies;
|
|
||||||
// accepts an SPDX expression and a non-empty list of licenses (not expressions)
|
// accepts an SPDX expression and a non-empty list of licenses (not expressions)
|
||||||
function satisfiesAny(candidateExpr, licenses) {
|
function satisfiesAny(candidateExpr, licenses) {
|
||||||
candidateExpr = cleanInvalidSPDX(candidateExpr);
|
candidateExpr = cleanInvalidSPDX(candidateExpr);
|
||||||
@@ -1422,7 +1511,6 @@ function satisfiesAny(candidateExpr, licenses) {
|
|||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.satisfiesAny = satisfiesAny;
|
|
||||||
// accepts an SPDX expression and a non-empty list of licenses (not expressions)
|
// accepts an SPDX expression and a non-empty list of licenses (not expressions)
|
||||||
function satisfiesAll(candidateExpr, licenses) {
|
function satisfiesAll(candidateExpr, licenses) {
|
||||||
candidateExpr = cleanInvalidSPDX(candidateExpr);
|
candidateExpr = cleanInvalidSPDX(candidateExpr);
|
||||||
@@ -1433,7 +1521,6 @@ function satisfiesAll(candidateExpr, licenses) {
|
|||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.satisfiesAll = satisfiesAll;
|
|
||||||
// accepts any SPDX expression
|
// accepts any SPDX expression
|
||||||
function isValid(spdxExpr) {
|
function isValid(spdxExpr) {
|
||||||
spdxExpr = cleanInvalidSPDX(spdxExpr);
|
spdxExpr = cleanInvalidSPDX(spdxExpr);
|
||||||
@@ -1445,14 +1532,12 @@ function isValid(spdxExpr) {
|
|||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.isValid = isValid;
|
|
||||||
const replaceOtherRegex = /(?<![\w-])OTHER(?![\w-])/g;
|
const replaceOtherRegex = /(?<![\w-])OTHER(?![\w-])/g;
|
||||||
// adjusts license expressions to not include the invalid `OTHER`
|
// adjusts license expressions to not include the invalid `OTHER`
|
||||||
// which ClearlyDefined adds to license strings
|
// which ClearlyDefined adds to license strings
|
||||||
function cleanInvalidSPDX(spdxExpr) {
|
function cleanInvalidSPDX(spdxExpr) {
|
||||||
return spdxExpr.replace(replaceOtherRegex, 'LicenseRef-clearlydefined-OTHER');
|
return spdxExpr.replace(replaceOtherRegex, 'LicenseRef-clearlydefined-OTHER');
|
||||||
}
|
}
|
||||||
exports.cleanInvalidSPDX = cleanInvalidSPDX;
|
|
||||||
|
|
||||||
|
|
||||||
/***/ }),
|
/***/ }),
|
||||||
@@ -1478,15 +1563,31 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.addDeniedToSummary = exports.addSnapshotWarnings = exports.addScorecardToSummary = exports.addScannedFiles = exports.addLicensesToSummary = exports.addChangeVulnerabilitiesToSummary = exports.addSummaryToSummary = void 0;
|
exports.addSummaryToSummary = addSummaryToSummary;
|
||||||
|
exports.addChangeVulnerabilitiesToSummary = addChangeVulnerabilitiesToSummary;
|
||||||
|
exports.addLicensesToSummary = addLicensesToSummary;
|
||||||
|
exports.addScannedFiles = addScannedFiles;
|
||||||
|
exports.addScorecardToSummary = addScorecardToSummary;
|
||||||
|
exports.addSnapshotWarnings = addSnapshotWarnings;
|
||||||
|
exports.addDeniedToSummary = addDeniedToSummary;
|
||||||
const core = __importStar(__nccwpck_require__(7484));
|
const core = __importStar(__nccwpck_require__(7484));
|
||||||
const utils_1 = __nccwpck_require__(9277);
|
const utils_1 = __nccwpck_require__(9277);
|
||||||
const icons = {
|
const icons = {
|
||||||
@@ -1559,7 +1660,6 @@ function addSummaryToSummary(vulnerableChanges, invalidLicenseChanges, deniedCha
|
|||||||
out.push(`\n[View full job summary](${process.env.GITHUB_SERVER_URL}/${process.env.GITHUB_REPOSITORY}/actions/runs/${process.env.GITHUB_RUN_ID})`);
|
out.push(`\n[View full job summary](${process.env.GITHUB_SERVER_URL}/${process.env.GITHUB_REPOSITORY}/actions/runs/${process.env.GITHUB_RUN_ID})`);
|
||||||
return out.join('\n');
|
return out.join('\n');
|
||||||
}
|
}
|
||||||
exports.addSummaryToSummary = addSummaryToSummary;
|
|
||||||
function countScorecardWarnings(scorecard, config) {
|
function countScorecardWarnings(scorecard, config) {
|
||||||
return scorecard.dependencies.reduce((total, dependency) => {
|
return scorecard.dependencies.reduce((total, dependency) => {
|
||||||
var _a, _b;
|
var _a, _b;
|
||||||
@@ -1617,7 +1717,6 @@ function addChangeVulnerabilitiesToSummary(vulnerableChanges, severity) {
|
|||||||
core.summary.addQuote(`Only included vulnerabilities with severity <strong>${severity}</strong> or higher.`);
|
core.summary.addQuote(`Only included vulnerabilities with severity <strong>${severity}</strong> or higher.`);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.addChangeVulnerabilitiesToSummary = addChangeVulnerabilitiesToSummary;
|
|
||||||
function addLicensesToSummary(invalidLicenseChanges, config) {
|
function addLicensesToSummary(invalidLicenseChanges, config) {
|
||||||
if (countLicenseIssues(invalidLicenseChanges) === 0) {
|
if (countLicenseIssues(invalidLicenseChanges) === 0) {
|
||||||
return;
|
return;
|
||||||
@@ -1636,7 +1735,6 @@ function addLicensesToSummary(invalidLicenseChanges, config) {
|
|||||||
core.debug(`found ${invalidLicenseChanges.unlicensed.length} unknown licenses`);
|
core.debug(`found ${invalidLicenseChanges.unlicensed.length} unknown licenses`);
|
||||||
core.debug(`${invalidLicenseChanges.unresolved.length} licenses could not be validated`);
|
core.debug(`${invalidLicenseChanges.unresolved.length} licenses could not be validated`);
|
||||||
}
|
}
|
||||||
exports.addLicensesToSummary = addLicensesToSummary;
|
|
||||||
const licenseIssueTypes = [
|
const licenseIssueTypes = [
|
||||||
'forbidden',
|
'forbidden',
|
||||||
'unresolved',
|
'unresolved',
|
||||||
@@ -1704,7 +1802,6 @@ function addScannedFiles(changes) {
|
|||||||
summary.addList(manifests);
|
summary.addList(manifests);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.addScannedFiles = addScannedFiles;
|
|
||||||
function snapshotWarningRecommendation(config, warnings) {
|
function snapshotWarningRecommendation(config, warnings) {
|
||||||
const no_pr_snaps = warnings.includes('No snapshots were found for the head SHA');
|
const no_pr_snaps = warnings.includes('No snapshots were found for the head SHA');
|
||||||
const retries_disabled = !config.retry_on_snapshot_warnings;
|
const retries_disabled = !config.retry_on_snapshot_warnings;
|
||||||
@@ -1764,7 +1861,6 @@ function addScorecardToSummary(scorecard, config) {
|
|||||||
core.summary.addRaw(`</details>`);
|
core.summary.addRaw(`</details>`);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.addScorecardToSummary = addScorecardToSummary;
|
|
||||||
function addSnapshotWarnings(config, warnings) {
|
function addSnapshotWarnings(config, warnings) {
|
||||||
core.summary.addHeading('Snapshot Warnings', 2);
|
core.summary.addHeading('Snapshot Warnings', 2);
|
||||||
core.summary.addQuote(`${icons.warning}: ${warnings}`);
|
core.summary.addQuote(`${icons.warning}: ${warnings}`);
|
||||||
@@ -1772,7 +1868,6 @@ function addSnapshotWarnings(config, warnings) {
|
|||||||
const docsLink = 'See <a href="https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/about-dependency-review#best-practices-for-using-the-dependency-review-api-and-the-dependency-submission-api-together">the documentation</a> for more information and troubleshooting advice.';
|
const docsLink = 'See <a href="https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/about-dependency-review#best-practices-for-using-the-dependency-review-api-and-the-dependency-submission-api-together">the documentation</a> for more information and troubleshooting advice.';
|
||||||
core.summary.addRaw(`${recommendation} ${docsLink}`);
|
core.summary.addRaw(`${recommendation} ${docsLink}`);
|
||||||
}
|
}
|
||||||
exports.addSnapshotWarnings = addSnapshotWarnings;
|
|
||||||
function countLicenseIssues(invalidLicenseChanges) {
|
function countLicenseIssues(invalidLicenseChanges) {
|
||||||
return Object.values(invalidLicenseChanges).reduce((acc, val) => acc + val.length, 0);
|
return Object.values(invalidLicenseChanges).reduce((acc, val) => acc + val.length, 0);
|
||||||
}
|
}
|
||||||
@@ -1793,7 +1888,6 @@ function addDeniedToSummary(deniedChanges) {
|
|||||||
]);
|
]);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.addDeniedToSummary = addDeniedToSummary;
|
|
||||||
function checkOrFailIcon(count) {
|
function checkOrFailIcon(count) {
|
||||||
return count === 0 ? icons.check : icons.cross;
|
return count === 0 ? icons.check : icons.cross;
|
||||||
}
|
}
|
||||||
@@ -1825,15 +1919,28 @@ var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (
|
|||||||
}) : function(o, v) {
|
}) : function(o, v) {
|
||||||
o["default"] = v;
|
o["default"] = v;
|
||||||
});
|
});
|
||||||
var __importStar = (this && this.__importStar) || function (mod) {
|
var __importStar = (this && this.__importStar) || (function () {
|
||||||
|
var ownKeys = function(o) {
|
||||||
|
ownKeys = Object.getOwnPropertyNames || function (o) {
|
||||||
|
var ar = [];
|
||||||
|
for (var k in o) if (Object.prototype.hasOwnProperty.call(o, k)) ar[ar.length] = k;
|
||||||
|
return ar;
|
||||||
|
};
|
||||||
|
return ownKeys(o);
|
||||||
|
};
|
||||||
|
return function (mod) {
|
||||||
if (mod && mod.__esModule) return mod;
|
if (mod && mod.__esModule) return mod;
|
||||||
var result = {};
|
var result = {};
|
||||||
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
|
if (mod != null) for (var k = ownKeys(mod), i = 0; i < k.length; i++) if (k[i] !== "default") __createBinding(result, mod, k[i]);
|
||||||
__setModuleDefault(result, mod);
|
__setModuleDefault(result, mod);
|
||||||
return result;
|
return result;
|
||||||
};
|
};
|
||||||
|
})();
|
||||||
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
Object.defineProperty(exports, "__esModule", ({ value: true }));
|
||||||
exports.octokitClient = exports.renderUrl = exports.getManifestsSet = exports.groupDependenciesByManifest = void 0;
|
exports.groupDependenciesByManifest = groupDependenciesByManifest;
|
||||||
|
exports.getManifestsSet = getManifestsSet;
|
||||||
|
exports.renderUrl = renderUrl;
|
||||||
|
exports.octokitClient = octokitClient;
|
||||||
const core = __importStar(__nccwpck_require__(7484));
|
const core = __importStar(__nccwpck_require__(7484));
|
||||||
const octokit_1 = __nccwpck_require__(2373);
|
const octokit_1 = __nccwpck_require__(2373);
|
||||||
function groupDependenciesByManifest(changes) {
|
function groupDependenciesByManifest(changes) {
|
||||||
@@ -1850,11 +1957,9 @@ function groupDependenciesByManifest(changes) {
|
|||||||
}
|
}
|
||||||
return dependencies;
|
return dependencies;
|
||||||
}
|
}
|
||||||
exports.groupDependenciesByManifest = groupDependenciesByManifest;
|
|
||||||
function getManifestsSet(changes) {
|
function getManifestsSet(changes) {
|
||||||
return new Set(changes.flatMap(c => c.manifest));
|
return new Set(changes.flatMap(c => c.manifest));
|
||||||
}
|
}
|
||||||
exports.getManifestsSet = getManifestsSet;
|
|
||||||
function renderUrl(url, text) {
|
function renderUrl(url, text) {
|
||||||
if (url) {
|
if (url) {
|
||||||
return `<a href="${url}">${text}</a>`;
|
return `<a href="${url}">${text}</a>`;
|
||||||
@@ -1863,7 +1968,6 @@ function renderUrl(url, text) {
|
|||||||
return text;
|
return text;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
exports.renderUrl = renderUrl;
|
|
||||||
function isEnterprise() {
|
function isEnterprise() {
|
||||||
var _a;
|
var _a;
|
||||||
const serverUrl = new URL((_a = process.env['GITHUB_SERVER_URL']) !== null && _a !== void 0 ? _a : 'https://github.com');
|
const serverUrl = new URL((_a = process.env['GITHUB_SERVER_URL']) !== null && _a !== void 0 ? _a : 'https://github.com');
|
||||||
@@ -1884,7 +1988,6 @@ function octokitClient(token = 'repo-token', required = true) {
|
|||||||
}
|
}
|
||||||
return new octokit_1.Octokit(opts);
|
return new octokit_1.Octokit(opts);
|
||||||
}
|
}
|
||||||
exports.octokitClient = octokitClient;
|
|
||||||
|
|
||||||
|
|
||||||
/***/ }),
|
/***/ }),
|
||||||
|
|||||||
+1
-1
File diff suppressed because one or more lines are too long
Reference in New Issue
Block a user