Skip to content

fix(ci): remove unsupported pnpm audit --ignore flags - #1

Closed
manishpatel00 with Copilot wants to merge 8 commits into
mainfrom
copilot/remove-unsupported-ignore-flags
Closed

manishpatel00 with Copilot wants to merge 8 commits into
mainfrom
copilot/remove-unsupported-ignore-flags

Conversation

Copilot AI commented Jul 31, 2026 •

Copy link
Copy Markdown

Security Scan fails on pnpm v9 because pnpm audit no longer accepts --ignore, causing an immediate non-zero exit before vulnerability evaluation. This PR updates the audit invocation to use only supported flags while preserving the existing severity threshold.

  • Root cause alignment

    • Remove unsupported --ignore arguments from the workflow audit command used in .github/workflows/security.yml.
  • Workflow behavior change

    • Keep --audit-level=moderate unchanged so gating remains at the same severity level.
    • No other workflow steps, tooling versions, or scan stages were modified.
- name: Run security audit
  run: pnpm audit --audit-level=moderate

@vercel

vercel Bot commented Jul 31, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
error404-ui Error Error Jul 31, 2026 10:10am

Copilot AI changed the title [WIP] Fix security scan workflow by removing unsupported ignore flags fix(ci): remove unsupported pnpm audit --ignore flags Jul 31, 2026
Copilot AI requested a review from manishpatel00 July 31, 2026 06:10

This branch had an error being deployed

1 failed deployment
Preview — 632b7312 Deployed Jul 31, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants