File tree Expand file tree Collapse file tree 3 files changed +37
-6
lines changed
Expand file tree Collapse file tree 3 files changed +37
-6
lines changed Original file line number Diff line number Diff line change 1+ on :
2+ pull_request :
3+ workflow_dispatch :
4+ schedule :
5+ - cron : ' 0 12 * * *' # Run daily at 12:00 UTC
6+
7+ name : PMD
8+ run-name : PMD - ${{ github.event_name }}
9+
10+ permissions :
11+ contents : read
12+
13+ jobs :
14+ pmd_analyse :
15+ runs-on : ubuntu-latest
16+ permissions :
17+ contents : write
18+ id-token : write
19+ steps :
20+ - name : Checkout Repository
21+ uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
22+ - name : Setup Java
23+ uses : actions/setup-java@3a4f6e1af504cf6a31855fa899c6aa5355ba6c12 # v4.7.0
24+ with :
25+ java-version : 21
26+ distribution : corretto
27+ cache : maven
28+ - uses : pmd/pmd-github-action@d9c1f3c5940cbf5923f1354e83fa858b4496ebaa # v2.0.0
29+ with :
30+ rulesets : ' ruleset.xml'
31+ token : ${{ secrets.GITHUB_TOKEN }}
Original file line number Diff line number Diff line change 1919 contents : read
2020 pull-requests : write
2121 steps :
22- - name : ' Checkout Repository'
22+ - name : Checkout Repository
2323 uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
24- - name : ' Verify Contents'
24+ - name : Verify Contents
2525 uses : actions/dependency-review-action@3b139cfc5fae8b618d3eae3675e383bb1769c019 # v4.5.0
2626 with :
2727 config-file : ./.github/dependency-review-config.yml
Original file line number Diff line number Diff line change @@ -20,24 +20,24 @@ jobs:
2020 security-events : write
2121 id-token : write
2222 steps :
23- - name : " Checkout code "
23+ - name : Checkout Repository
2424 uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2525 with :
2626 persist-credentials : false
27- - name : " Run analysis "
27+ - name : Run Analysis
2828 uses : ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
2929 with :
3030 results_file : results.sarif
3131 results_format : sarif
3232 publish_results : true
3333 repo_token : ${{ secrets.SCORECARD_TOKEN }}
34- - name : " Upload results "
34+ - name : Upload Results
3535 uses : actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b # v4.5.0
3636 with :
3737 name : SARIF file
3838 path : results.sarif
3939 retention-days : 5
40- - name : " Upload to code-scanning "
40+ - name : Upload to Code-Scanning
4141 uses : github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9
4242 with :
4343 sarif_file : results.sarif
You can’t perform that action at this time.
0 commit comments