diff --git a/.circleci/config.yml b/.circleci/config.yml index 5c579a5bd..5e2a674cc 100644 --- a/.circleci/config.yml +++ b/.circleci/config.yml @@ -16,3 +16,11 @@ jobs: - run: name: Run flake8 command: pipenv run flake8 + + - run: + name: Check Python dependencies for known vulnerabilities + command: pipenv check + + - run: + name: Run static analysis on source code to find security issues + command: pipenv install bandit && pipenv run bandit --recursive . -ll