Skip to content

Conversation

@sirimykland
Copy link
Collaborator

No description provided.

@sonarqubecloud
Copy link

småfix

fjern endring i yarnrc

legg til actions

test simel

fjern scope

oppdater med ny variant

test ut env på config oppsett

test env variablel på install

test

fjern always auth

forenkle yarn auth for @navikt repository
@sirimykland sirimykland force-pushed the chore/simplify-npmRegistryAuthentiction-in-workflow branch from 341ddd2 to a7915ae Compare October 30, 2025 17:23
run: |
yarn config set npmScopes.navikt.npmRegistryServer "https://npm.pkg.github.com"
yarn config set npmScopes.navikt.npmAlwaysAuth true
yarn config set npmScopes.navikt.npmAuthToken ${{ inputs.npmAuthToken }}

Check failure

Code scanning / SonarCloud

GitHub Actions should not be vulnerable to script injections High

Change this action to not use user-controlled data directly in a run block. See more on SonarQube Cloud
@sonarqubecloud
Copy link

Quality Gate Failed Quality Gate failed

Failed conditions
E Security Rating on New Code (required ≥ A)

See analysis details on SonarQube Cloud

Catch issues before they fail your Quality Gate with our IDE extension SonarQube for IDE

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants