Skip to content

Commit bddda8b

Browse files
author
Gabriel Kihlman
committed
Do not attempt to run scan on forked repos without credentials
1 parent 94708c0 commit bddda8b

File tree

1 file changed

+10
-9
lines changed

1 file changed

+10
-9
lines changed

.github/workflows/scan.yml

Lines changed: 10 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -9,6 +9,7 @@ on:
99
env:
1010
SCAN_IMG:
1111
yes-docker-local.artifactory.in.yubico.org/static-code-analysis/java:v1
12+
SECRET: ${{ secrets.ARTIFACTORY_READER_TOKEN }}
1213

1314
jobs:
1415
build:
@@ -17,17 +18,17 @@ jobs:
1718
steps:
1819
- uses: actions/checkout@master
1920

20-
- name: Prep scan
21-
run: |
22-
docker login yes-docker-local.artifactory.in.yubico.org/ \
23-
-u svc-static-code-analysis-reader \
24-
-p ${{ secrets.ARTIFACTORY_READER_TOKEN }}
25-
docker pull ${SCAN_IMG}
26-
2721
- name: Scan and fail on warnings
2822
run: |
29-
docker run -v${PWD}:/k \
30-
-e PROJECT_NAME=${GITHUB_REPOSITORY#Yubico/} -t ${SCAN_IMG}
23+
if [ "${SECRET}" != "" ]; then
24+
docker login yes-docker-local.artifactory.in.yubico.org/ \
25+
-u svc-static-code-analysis-reader -p ${SECRET}
26+
docker pull ${SCAN_IMG}
27+
docker run -v${PWD}:/k \
28+
-e PROJECT_NAME=${GITHUB_REPOSITORY#Yubico/} -t ${SCAN_IMG}
29+
else
30+
echo "No docker registry credentials, not scanning"
31+
fi
3132
3233
- uses: actions/upload-artifact@master
3334
if: failure()

0 commit comments

Comments
 (0)