Skip to content

Better product Testing #84

Better product Testing

Better product Testing #84

Workflow file for this run

name: CI
on: [push, pull_request]
jobs:
lint-backend:
runs-on: ubuntu-latest
defaults:
run:
working-directory: backend
steps:
- uses: actions/checkout@v4
- name: Set up Python 3.13
uses: actions/setup-python@v5
with:
python-version: "3.13"
- name: Install Poetry
run: |
curl -sSL https://install.python-poetry.org | python3 -
echo "$HOME/.local/bin" >> $GITHUB_PATH
- name: Cache Poetry dependencies
uses: actions/cache@v4
with:
path: ~/.cache/pypoetry
key: ${{ runner.os }}-poetry-${{ hashFiles('backend/poetry.lock') }}
restore-keys: |
${{ runner.os }}-poetry-
- name: Install dependencies
run: poetry install
- name: Security scan with Safety
env:
SAFETY_API_KEY: ${{ secrets.SAFETY_API_KEY }}
run: poetry run safety scan --key "$SAFETY_API_KEY" --full-report --policy-file .safety-policy.yml
- name: Security scan with Bandit
run: poetry run bandit -r app
- name: Lint with Ruff
run: poetry run ruff check .
- name: Type check with mypy
run: poetry run mypy app
- name: Lint with pylint
run: poetry run pylint app/ --fail-under=7
lint-frontend:
runs-on: ubuntu-latest
defaults:
run:
working-directory: frontend
steps:
- uses: actions/checkout@v4
- name: Set up Node.js
uses: actions/setup-node@v4
with:
node-version: '18'
cache: 'npm'
cache-dependency-path: frontend/package-lock.json
- name: Install dependencies
run: npm ci
- name: Lint with ESLint
run: npm run lint