From 5f6a82b6c49d04298fdbe840e7b4d86cd5555f1f Mon Sep 17 00:00:00 2001 From: Vladyslav Mankivskyi Date: Wed, 24 Jul 2024 12:32:56 +0300 Subject: [PATCH] chore: add sonarqube --- .github/workflows/review.yml | 30 ++++++++++++++++++++++++++++++ sonar-project.properties | 1 + 2 files changed, 31 insertions(+) create mode 100644 .github/workflows/review.yml create mode 100644 sonar-project.properties diff --git a/.github/workflows/review.yml b/.github/workflows/review.yml new file mode 100644 index 0000000..0f20f5c --- /dev/null +++ b/.github/workflows/review.yml @@ -0,0 +1,30 @@ +name: Review + +on: + push: + branches: + - main + pull_request: + types: [opened, synchronize, reopened] + +jobs: + build: + name: Build + runs-on: ubuntu-latest + permissions: read-all + steps: + - uses: actions/checkout@v2 + with: + fetch-depth: 0 # Shallow clones should be disabled for a better relevancy of analysis + - uses: sonarsource/sonarqube-scan-action@master + env: + SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }} + SONAR_HOST_URL: ${{ secrets.SONAR_HOST_URL }} + # If you wish to fail your job when the Quality Gate is red, uncomment the + # following lines. This would typically be used to fail a deployment. + # We do not recommend to use this in a pull request. Prefer using pull request + # decoration instead. + - uses: sonarsource/sonarqube-quality-gate-action@master + timeout-minutes: 5 + env: + SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }} diff --git a/sonar-project.properties b/sonar-project.properties new file mode 100644 index 0000000..92e4f35 --- /dev/null +++ b/sonar-project.properties @@ -0,0 +1 @@ +sonar.projectKey=automazeio_diffy-worker-review_27ac4111-009b-4b36-83d0-aa16b1dbde3c \ No newline at end of file