File tree Expand file tree Collapse file tree 3 files changed +36
-69
lines changed Expand file tree Collapse file tree 3 files changed +36
-69
lines changed Load Diff This file was deleted.
Load Diff This file was deleted.
Original file line number Diff line number Diff line change 1+ name : Salesforce Code Analyzer Workflow
2+ on :
3+ - push
4+ - workflow_dispatch
5+ jobs :
6+ salesforce-code-analyzer-workflow :
7+ runs-on : ubuntu-latest
8+ steps :
9+ - name : Check out files
10+ uses : actions/checkout@v4
11+
12+ - name : Install Salesforce CLI
13+ run : npm install -g @salesforce/cli@latest
14+
15+ - name : Install Salesforce Code Analyzer Plugin
16+ run : sf plugins install @salesforce/sfdx-scanner@latest
17+
18+ - name : Run Salesforce Code Analyzer
19+ id : run-code-analyzer
20+ uses : forcedotcom/run-code-analyzer@v1
21+ with :
22+ run-command : run
23+ run-arguments : --category=security --target . --format=sarif --outfile results.sarif
24+ results-artifact-name : salesforce-code-analyzer-results
25+
26+ # - name: Check the outputs to determine whether to fail
27+ # if: |
28+ # steps.run-code-analyzer.outputs.exit-code > 0 ||
29+ # steps.run-code-analyzer.outputs.num-sev1-violations > 0 ||
30+ # steps.run-code-analyzer.outputs.num-violations > 10
31+ # run: exit 1
32+
33+ - name : Upload SARIF file
34+ uses : github/codeql-action/upload-sarif@v3
35+ with :
36+ sarif_file : results.sarif
You can’t perform that action at this time.
0 commit comments