Skip to content

Update dependency org.owasp.dependencycheck to v8.4.3 {patch} (#40) #73

Update dependency org.owasp.dependencycheck to v8.4.3 {patch} (#40)

Update dependency org.owasp.dependencycheck to v8.4.3 {patch} (#40) #73

Workflow file for this run

# This workflow will build a Java project with Gradle
# For more information see: https://help.github.com/actions/language-and-framework-guides/building-and-testing-java-with-gradle
name: JavaCI
#on:
# push:
# branches: [ main ]
# paths-ignore:
# - 'README.md'
# - '**/README.md'
# - 'CODE_OF_CONDUCT.md'
# - 'CONTRIBUTING.md'
# - 'pull_request_template.md'
# - '.lift/.toml'
# - '**/.lift/.toml'
# - 'SECURITY.md'
# - 'LICENSE'
# - '.github/ISSUE_TEMPLATE/**'
# - '.github/assets/**'
# - '.github/workflows/**'
# - '.github/pr-labeler.yml'
# - 'renovate.json'
# - '.whitesource'
# - 'gradle/libs.versions.toml'
# - 'gradle/verification-metadata.xml'
# - 'gradle/verification-metadata-clean.xml'
# - 'gradle/wrapper/gradle-wrapper.properties'
# - 'gradle/wrapper/gradle-wrapper.jar'
# - 'gradlew'
# - 'gradlew.bat'
# - 'config/ossindex/exclusions.txt'
permissions: read-all
jobs:
build:
runs-on: ubuntu-latest
steps:
# Set up build environment
- uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
with:
fetch-depth: 0
- name: Set up JDK 17
uses: actions/setup-java@0ab4596768b603586c0de567f2430c30f5b0d2b0 # v3.13.0
with:
distribution: temurin
java-version: 17
- uses: gradle/gradle-build-action@842c587ad8aa4c68eeba24c396e15af4c2e9f30a # v2.9.0
with:
gradle-home-cache-cleanup: true
arguments: |
tagVersion build
-PgithubUser=${{ secrets.PUBLISH_USER_NAME }}
-PgithubToken=${{ secrets.PUBLISH_KEY }}
- name: Decode key
run: |
mkdir -p ${{ runner.temp }}/.gnupg/
echo -e "${{ secrets.OSSRH_GPG_SECRET_KEY }}" | base64 --decode > ${{ runner.temp }}/.gnupg/secring.gpg
- uses: gradle/gradle-build-action@842c587ad8aa4c68eeba24c396e15af4c2e9f30a # v2.9.0
with:
arguments: |
publish -x test
-PgithubUser=${{ secrets.PUBLISH_USER_NAME }}
-PgithubToken=${{ secrets.PUBLISH_KEY }}
-PossrhUsername=${{ secrets.OSSRH_USER }}
-PossrhPassword=${{ secrets.OSSRH_PASS }}
-Psigning.keyId=${{ secrets.SIGNING_KEY_ID }}
-Psigning.password=${{ secrets.OSSRH_GPG_SECRET_KEY_PASSWORD }}
-Psigning.secretKeyRingFile=${{ runner.temp }}/.gnupg/secring.gpg
- name: 'Clean-up GPG key'
if: always()
run: |
rm -rf ${{ runner.temp }}/.gnupg/
- name: Upload coverage to Codecov - Core
uses: codecov/codecov-action@eaaf4bedf32dbdc6b720b63067d99c4d77d6047d # v3.1.4
with:
token: ${{ secrets.CODECOV_TOKEN }}
file: ./file-barj-core/build/reports/jacoco/report.xml
flags: core
- name: Upload coverage to Codecov - Job
uses: codecov/codecov-action@eaaf4bedf32dbdc6b720b63067d99c4d77d6047d # v3.1.4
with:
token: ${{ secrets.CODECOV_TOKEN }}
file: ./file-barj-job/build/reports/jacoco/report.xml
flags: job