Skip to content

Commit

Permalink
Update synopsys.yaml
Browse files Browse the repository at this point in the history
  • Loading branch information
tuxtof authored Jul 9, 2024
1 parent f94f4d3 commit 50395d4
Showing 1 changed file with 25 additions and 8 deletions.
33 changes: 25 additions & 8 deletions .github/workflows/synopsys.yaml
Original file line number Diff line number Diff line change
@@ -1,9 +1,10 @@
name: Black Duck Policy Check
on:
pull_request:
pull_request_target:
push:
branches:
- main
push:
- 'release-*'

jobs:
security:
Expand All @@ -12,6 +13,8 @@ jobs:
steps:
- name: Checkout
uses: actions/checkout@v4
with:
ref: "${{ github.event.pull_request.merge_commit_sha }}"

- name: Setup Go
uses: actions/setup-go@v5
Expand All @@ -21,10 +24,24 @@ jobs:
- name: Build Project
run: make build

- name: Run Synopsys Detect
uses: synopsys-sig/[email protected]
- name: Black Duck Full Scan
if: ${{ github.event_name != 'pull_request' }}
uses: synopsys-sig/[email protected]
with:
blackduck_url: ${{ secrets.BLACKDUCK_URL }}
blackduck_token: ${{ secrets.BLACKDUCK_API_TOKEN }}
github_token: ${{ secrets.GITHUB_TOKEN }}
blackduck_scan_full: true
blackduck_scan_failure_severities: 'BLOCKER,CRITICAL'

- name: Black Duck PR Scan
if: ${{ github.event_name == 'pull_request' }}
uses: synopsys-sig/[email protected]
env:
DETECT_PROJECT_VERSION_NAME: ${{ github.base_ref }}
with:
github-token: ${{ secrets.GITHUB_TOKEN }}
detect-version: 8.10.0
blackduck-url: ${{ secrets.BLACKDUCK_URL }}
blackduck-api-token: ${{ secrets.BLACKDUCK_API_TOKEN }}
blackduck_url: ${{ secrets.BLACKDUCK_URL }}
blackduck_token: ${{ secrets.BLACKDUCK_API_TOKEN }}
github_token: ${{ secrets.GITHUB_TOKEN }}
blackduck_scan_full: false
blackduck_prComment_enabled: true

0 comments on commit 50395d4

Please sign in to comment.