Compare commits
	
		
			6 Commits
		
	
	
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
| 3ca02fbe2e | |||
| 6f4c537a3b | |||
| ec9494ea13 | |||
| 13b67934f6 | |||
| 5d9fa8f641 | |||
| 83fe18553d | 
@@ -12,22 +12,31 @@ jobs:
 | 
				
			|||||||
    runs-on: ubuntu-latest
 | 
					    runs-on: ubuntu-latest
 | 
				
			||||||
    steps:
 | 
					    steps:
 | 
				
			||||||
      - name: Check out repository code
 | 
					      - name: Check out repository code
 | 
				
			||||||
        uses: actions/checkout@v4.2.2
 | 
					        uses: actions/checkout@v5.0.0
 | 
				
			||||||
        with:
 | 
					        with:
 | 
				
			||||||
          fetch-depth: 0
 | 
					          fetch-depth: 0
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      - uses: hadolint/hadolint-action@v3.1.0
 | 
					      - name: Run Hadolint
 | 
				
			||||||
 | 
					        uses: hadolint/hadolint-action@v3.3.0
 | 
				
			||||||
        with:
 | 
					        with:
 | 
				
			||||||
          dockerfile: Dockerfile
 | 
					          dockerfile: Dockerfile
 | 
				
			||||||
          output-file: hadolint.out
 | 
					          output-file: hadolint.out
 | 
				
			||||||
          format: sonarqube
 | 
					          format: sonarqube
 | 
				
			||||||
          no-fail: true
 | 
					          no-fail: true
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      - name: SonarQube Scan
 | 
					      # - name: SonarQube Scan
 | 
				
			||||||
        uses: SonarSource/sonarqube-scan-action@v5.2.0
 | 
					      #   uses: SonarSource/sonarqube-scan-action@v5.2.0
 | 
				
			||||||
        env:
 | 
					      #   env:
 | 
				
			||||||
          SONAR_HOST_URL: ${{ secrets.SONARQUBE_HOST_URL }}
 | 
					      #     SONAR_HOST_URL: ${{ secrets.SONARQUBE_HOST_URL }}
 | 
				
			||||||
          SONAR_TOKEN: ${{ secrets.SONARQUBE_TOKEN }}
 | 
					      #     SONAR_TOKEN: ${{ secrets.SONARQUBE_TOKEN }}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					      # - name: Snyk SAST Scan
 | 
				
			||||||
 | 
					      #   uses: snyk/actions/python@master
 | 
				
			||||||
 | 
					      #   env:
 | 
				
			||||||
 | 
					      #     SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
 | 
				
			||||||
 | 
					      #   with:
 | 
				
			||||||
 | 
					      #     # command: snyk
 | 
				
			||||||
 | 
					      #     args: snyk code test --all-projects --exclude=.archive
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      - name: Snyk Vulnerability Scan
 | 
					      - name: Snyk Vulnerability Scan
 | 
				
			||||||
        uses: snyk/actions/python@master
 | 
					        uses: snyk/actions/python@master
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -45,7 +45,7 @@ jobs:
 | 
				
			|||||||
          REPO: ${{ gitea.repository }}
 | 
					          REPO: ${{ gitea.repository }}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      - name: Check out repository
 | 
					      - name: Check out repository
 | 
				
			||||||
        uses: actions/checkout@v4.2.2
 | 
					        uses: actions/checkout@v5.0.0
 | 
				
			||||||
        with:
 | 
					        with:
 | 
				
			||||||
          fetch-depth: 0
 | 
					          fetch-depth: 0
 | 
				
			||||||
          ref: ${{ needs.tag.outputs.tag_name }}
 | 
					          ref: ${{ needs.tag.outputs.tag_name }}
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -8,6 +8,9 @@
 | 
				
			|||||||
  "platformCommit": "enabled",
 | 
					  "platformCommit": "enabled",
 | 
				
			||||||
  "rebaseWhen": "behind-base-branch",
 | 
					  "rebaseWhen": "behind-base-branch",
 | 
				
			||||||
  "rollbackPrs": true,
 | 
					  "rollbackPrs": true,
 | 
				
			||||||
 | 
					  "semanticCommits": "enabled",
 | 
				
			||||||
 | 
					  "semanticCommitScope": "deps",
 | 
				
			||||||
 | 
					  "semanticCommitType": "feat",
 | 
				
			||||||
  "vulnerabilityAlerts": {
 | 
					  "vulnerabilityAlerts": {
 | 
				
			||||||
    "commitMessagePrefix": "[SECURITY] ",
 | 
					    "commitMessagePrefix": "[SECURITY] ",
 | 
				
			||||||
    "enabled": true,
 | 
					    "enabled": true,
 | 
				
			||||||
 
 | 
				
			|||||||
		Reference in New Issue
	
	Block a user