Skip to content

Commit 8dd7de6

Browse files
committed
add wiz scan on create PR to 3.0.0 (SWG-14342)
1 parent ad9635d commit 8dd7de6

File tree

2 files changed

+14
-2
lines changed

2 files changed

+14
-2
lines changed

.github/workflows/maven-master.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -88,7 +88,7 @@ jobs:
8888
with:
8989
java-version: ${{ matrix.java }}
9090
- name: Cache local Maven repository
91-
uses: actions/cache@v2
91+
uses: actions/cache@v3
9292
with:
9393
path: ~/.m2/repository
9494
key: ${{ runner.os }}-maven-${{ hashFiles('**/pom.xml') }}

.github/workflows/maven-pr-3.0.yml

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -75,4 +75,16 @@ jobs:
7575
fi
7676
echo "GENERATORS_VERSION_PROPERTY ${GENERATORS_VERSION_PROPERTY}"
7777
echo "GENERATORS_VERSION_PROPERTY=${GENERATORS_VERSION_PROPERTY}" >> $GITHUB_ENV
78-
mvn clean verify -U -DJETTY_TEST_HTTP_PORT=8070 -DJETTY_TEST_STOP_PORT=8069 ${GENERATORS_VERSION_PROPERTY}
78+
mvn clean verify -U -DJETTY_TEST_HTTP_PORT=8070 -DJETTY_TEST_STOP_PORT=8069 ${GENERATORS_VERSION_PROPERTY}
79+
80+
- name: Download Wiz CLI
81+
run: curl -o wizcli https://downloads.wiz.io/wizcli/latest/wizcli-linux-amd64 && chmod +x wizcli
82+
83+
- name: Scan Maven build directory with Wiz
84+
run: |
85+
./wizcli auth --id "$WIZ_CLIENT_ID" --secret "$WIZ_CLIENT_SECRET"
86+
./wizcli dir scan --path target --policy "$POLICY"
87+
env:
88+
WIZ_CLIENT_ID: ${{ secrets.WIZ_CLIENT_ID }}
89+
WIZ_CLIENT_SECRET: ${{ secrets.WIZ_CLIENT_SECRET }}
90+
POLICY: "SmartBear default vulnerabilities policy"

0 commit comments

Comments
 (0)