From a68cba040f2f76bed0867bb19e8e3306e7911c12 Mon Sep 17 00:00:00 2001 From: Nambi Srinivasan S Date: Sun, 12 Jan 2025 22:46:40 +0530 Subject: [PATCH] Update bandit.yml --- .github/workflows/bandit.yml | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/.github/workflows/bandit.yml b/.github/workflows/bandit.yml index a3f41a73d7..ed006c556f 100644 --- a/.github/workflows/bandit.yml +++ b/.github/workflows/bandit.yml @@ -21,7 +21,7 @@ jobs: steps: - name: Checkout code uses: actions/checkout@v3 - + - name: Set Report Date run: echo "REPORT_DATE=$(date +'%d-%b-%Y')" >> $GITHUB_ENV @@ -44,11 +44,11 @@ jobs: ini: 'DEFAULT' targets: '.' - - name: Install SARIF Tools - run: pip install sarif-tools - + - name: Install SARIF to HTML Converter + run: npm install -g @microsoft/sarif-multitool + - name: Convert SARIF to HTML - run: python -m sarif_tools.html ${{ env.SARIF_REPORT_PATH }} -o ${{ env.HTML_REPORT_PATH }} + run: sarif-multitool transform ${{ env.SARIF_REPORT_PATH }} --output ${{ env.HTML_REPORT_PATH }} - name: Upload Bandit SARIF Report as Artifact if: always()