Bump actions/checkout from 4.1.2 to 4.1.5 #95
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# This workflow performs a static analysis of your Kotlin source code using Detekt. | |
# | |
# Scans are triggered: | |
# 1. On every push to default and protected branches | |
# 2. On every Pull Request targeting the default branch | |
# 3. On a weekly schedule | |
# 4. Manually, on demand, via the "workflow_dispatch" event | |
name: Scan with Detekt | |
on: | |
push: | |
branches: [ main ] | |
pull_request: | |
branches: [ main ] | |
workflow_dispatch: | |
jobs: | |
scan: | |
name: Scan | |
runs-on: ubuntu-latest | |
steps: | |
- uses: actions/checkout@44c2b7a8a4ea60a981eaca3cf939b5f4305c123b | |
- uses: actions/setup-java@99b8673ff64fbf99d8d325f52d9a5bdedb8483e9 | |
with: | |
distribution: 'temurin' | |
java-version: '17' | |
- name: Setup Gradle | |
uses: gradle/gradle-build-action@29c0906b64b8fc82467890bfb7a0a7ef34bda89e | |
with: | |
gradle-home-cache-cleanup: true | |
# Performs static analysis using Detekt | |
- name: Run Detekt | |
continue-on-error: true | |
run: ./gradlew detekt | |
# Uploads results to GitHub repository using the upload-sarif action | |
- uses: github/codeql-action/upload-sarif@05963f47d870e2cb19a537396c1f668a348c7d8f | |
with: | |
# Path to SARIF file relative to the root of the repository | |
sarif_file: ${{ github.workspace }}/app/build/reports/detekt/detekt.sarif | |
checkout_path: ${{ github.workspace }} |