-
Notifications
You must be signed in to change notification settings - Fork 24
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Create annotations from sarif report #12
Conversation
adangel
commented
Dec 1, 2021
•
edited
Loading
edited
- Fixes Create inline annotations for found violations #7
Maybe we need to create a check, as described in https://tgrall.github.io/blog/2021/11/07/how-to-write-a-github-action-annotation-api API Docs: https://docs.github.com/en/rest/reference/checks We could create a check with status "in_progress" and after PMD finished, we can update the check and add the annotations. |
@adangel I've created recently a few github actions for PMD:
I've created a demo app to demonstrate those actions: pmd-github-action-demo, feel free to raise PRs and play with it. Feel free to pick up anything you want and make it part of the PMD project. |
@rody Thanks for the tipps and suggestions.
now I know where to look. I always looked at the build summary page - and there the annotations are listed but without telling on which file they are. (Note: there are two annotations, one from the push workflow and the other from the pull request workflow)
That's an interesting approach to create PR review comments automatically. I'll have to think about this, whether this should be an optional feature.
Yeah, that's basically #6 . |
Also output violations as info logging during build
Also separate violations in info logging