Skip to content

Merge pull request #168 from HL7/do-20241211-owasp-update #109

Merge pull request #168 from HL7/do-20241211-owasp-update

Merge pull request #168 from HL7/do-20241211-owasp-update #109

Workflow file for this run

name: "OWASP Security Scans"
on:
push:
branches: [ "main" ]
pull_request:
branches: [ "main" ]
workflow_dispatch:
jobs:
analyze:
name: Analyze
runs-on: ubuntu-latest
steps:
- name: Checkout repository
uses: actions/checkout@v4
- env:
NVD_API_KEY:
${{ secrets.NVD_API_KEY }}
run: |
./gradlew dependencyCheckAnalyze
- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v3
with:
# Path to SARIF file relative to the root of the repository
sarif_file: build/reports/dependency-check-report.sarif
# Optional category for the results
# Used to differentiate multiple results for one commit
category: OWASP-dependency-check