jbampton opened a new pull request, #2573:
URL: https://github.com/apache/sedona/pull/2573

   https://github.com/pypa/pip-audit
   
   "Audits Python environments, requirements files and dependency trees for 
known security vulnerabilities, and can automatically fix them"
   
   https://github.com/pypa/pip-audit?tab=readme-ov-file#pre-commit-support
   
   Also used on the Apache Trusted Tooling Release repo:
   
   
https://github.com/apache/tooling-trusted-releases/blob/23b3bc5adce730835e0b7d218e14d7e90db13e0e/.pre-commit-config.yaml#L100
   
   ## Did you read the Contributor Guide?
   
   - Yes, I have read the [Contributor 
Rules](https://sedona.apache.org/latest/community/rule/) and [Contributor 
Development Guide](https://sedona.apache.org/latest/community/develop/)
   
   ## Is this PR related to a ticket?
   
   - No:
     - this is a CI update. The PR name follows the format `[CI] my subject`
   
   ## What changes were proposed in this PR?
   
   As described above added another check / test to our pre-commit framework.
   
   In the examples it says it works with `pyproject.toml` files:
   
   https://github.com/pypa/pip-audit?tab=readme-ov-file#examples
   
   ## How was this patch tested?
   
   With pre-commit
   
   ## Did this PR include necessary documentation updates?
   
   - No, this PR does not affect any public API so no need to change the 
documentation.
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to