From 459d1d0ea63aac249f0f96f9b1b507ac5e535c6d Mon Sep 17 00:00:00 2001 From: Adrian Moreno Date: Sat, 7 Oct 2023 13:06:20 -0600 Subject: [PATCH 1/2] #41 Add new GitHub Actions workflow to submit dependency tree samples on changes to main branch --- .../submit-dependency-tree-samples.yml | 29 +++++++++++++++++++ 1 file changed, 29 insertions(+) create mode 100644 .github/workflows/submit-dependency-tree-samples.yml diff --git a/.github/workflows/submit-dependency-tree-samples.yml b/.github/workflows/submit-dependency-tree-samples.yml new file mode 100644 index 0000000..615c701 --- /dev/null +++ b/.github/workflows/submit-dependency-tree-samples.yml @@ -0,0 +1,29 @@ +name: Submit Dependency Tree Samples + +on: + push: + branches: + - main + paths: + - '**/pom.xml' + +jobs: + submit-dependency-tree: + runs-on: ubuntu-latest + permissions: + contents: write + + steps: + - name: Checkout code + uses: actions/checkout@v2 + + - name: Set up Java + uses: actions/setup-java@v3 + with: + distribution: temurin + java-version: '17' + + - name: Submit Dependency Snapshot + uses: advanced-security/maven-dependency-submission-action@v3 + with: + token: ${{ secrets.GITHUB_TOKEN }} From d4dc0f806f62956894086810fdcce8cd4cd5b54e Mon Sep 17 00:00:00 2001 From: Adrian Moreno Date: Sun, 8 Oct 2023 14:18:19 -0600 Subject: [PATCH 2/2] #41 Addressed PR comments --- .github/workflows/submit-dependency-tree-samples.yml | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/.github/workflows/submit-dependency-tree-samples.yml b/.github/workflows/submit-dependency-tree-samples.yml index 615c701..e7eab79 100644 --- a/.github/workflows/submit-dependency-tree-samples.yml +++ b/.github/workflows/submit-dependency-tree-samples.yml @@ -15,7 +15,7 @@ jobs: steps: - name: Checkout code - uses: actions/checkout@v2 + uses: actions/checkout@v4 - name: Set up Java uses: actions/setup-java@v3 @@ -25,5 +25,3 @@ jobs: - name: Submit Dependency Snapshot uses: advanced-security/maven-dependency-submission-action@v3 - with: - token: ${{ secrets.GITHUB_TOKEN }}