From f462f50dd322d70e098156119ca3b6d513843087 Mon Sep 17 00:00:00 2001 From: Ryan King Date: Tue, 27 Feb 2024 20:27:09 +0800 Subject: [PATCH 1/4] add fossa scans to prs --- .github/workflows/fossa-scan.yml | 23 +++++++++++++++++++++++ .github/workflows/pull-request.yml | 6 +++++- 2 files changed, 28 insertions(+), 1 deletion(-) create mode 100644 .github/workflows/fossa-scan.yml diff --git a/.github/workflows/fossa-scan.yml b/.github/workflows/fossa-scan.yml new file mode 100644 index 00000000..235feb1c --- /dev/null +++ b/.github/workflows/fossa-scan.yml @@ -0,0 +1,23 @@ +name: FOSSA Scans + +on: + workflow_call: + +jobs: + fossa-scan: + runs-on: ubuntu-latest + steps: + - name: "Checkout Code" + uses: actions/checkout@v3 + + - name: "Run FOSSA Scan" + uses: fossas/fossa-action@main + with: + api-key: ${{secrets.FOSSAAPIKEY}} + + - name: "FOSSA Tests" + id: fossa-tests + uses: fossas/fossa-action@main + with: + api-key: ${{secrets.FOSSAAPIKEY}} + run-tests: true diff --git a/.github/workflows/pull-request.yml b/.github/workflows/pull-request.yml index e229f0e8..335d6a36 100644 --- a/.github/workflows/pull-request.yml +++ b/.github/workflows/pull-request.yml @@ -5,10 +5,14 @@ on: branches: '*' jobs: + fossa-scans: + name: Rune FOSSA Scans + uses: ./.github/workflows/fossa-scan.yml + trigger-lint: name: Run Lint Checks uses: ./.github/workflows/lint.yml - + trigger-unit-test: name: Run Unit Tests uses: ./.github/workflows/unit-test.yml From d01b491fbc0f13bb77a688f887257ea6fca911fe Mon Sep 17 00:00:00 2001 From: Ryan King Date: Tue, 27 Feb 2024 20:44:45 +0800 Subject: [PATCH 2/4] inherit secrets --- .github/workflows/pull-request.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/workflows/pull-request.yml b/.github/workflows/pull-request.yml index 335d6a36..fb8e8dbb 100644 --- a/.github/workflows/pull-request.yml +++ b/.github/workflows/pull-request.yml @@ -8,6 +8,7 @@ jobs: fossa-scans: name: Rune FOSSA Scans uses: ./.github/workflows/fossa-scan.yml + secrets: inherit trigger-lint: name: Run Lint Checks From e67451f7c5f9a6e8175d3f4dbe0e05769164c8cd Mon Sep 17 00:00:00 2001 From: Ryan King Date: Tue, 27 Feb 2024 21:03:24 +0800 Subject: [PATCH 3/4] fix typo --- .github/workflows/pull-request.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/pull-request.yml b/.github/workflows/pull-request.yml index fb8e8dbb..e596ee2c 100644 --- a/.github/workflows/pull-request.yml +++ b/.github/workflows/pull-request.yml @@ -6,7 +6,7 @@ on: jobs: fossa-scans: - name: Rune FOSSA Scans + name: Run FOSSA Scans uses: ./.github/workflows/fossa-scan.yml secrets: inherit From cb0d4fc3a1b0bc1bb5946efe2b6238acce96a297 Mon Sep 17 00:00:00 2001 From: Ryan King Date: Tue, 27 Feb 2024 21:37:20 +0800 Subject: [PATCH 4/4] update and pin versions --- .github/workflows/fossa-scan.yml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/fossa-scan.yml b/.github/workflows/fossa-scan.yml index 235feb1c..3f620052 100644 --- a/.github/workflows/fossa-scan.yml +++ b/.github/workflows/fossa-scan.yml @@ -8,16 +8,16 @@ jobs: runs-on: ubuntu-latest steps: - name: "Checkout Code" - uses: actions/checkout@v3 + uses: actions/checkout@v4 - name: "Run FOSSA Scan" - uses: fossas/fossa-action@main + uses: fossas/fossa-action@v1.3.3 with: api-key: ${{secrets.FOSSAAPIKEY}} - name: "FOSSA Tests" id: fossa-tests - uses: fossas/fossa-action@main + uses: fossas/fossa-action@v1.3.3 with: api-key: ${{secrets.FOSSAAPIKEY}} run-tests: true