diff --git a/.github/workflows/dependency-analysis.yml b/.github/workflows/dependency-analysis.yml new file mode 100644 index 000000000..5f1cb3790 --- /dev/null +++ b/.github/workflows/dependency-analysis.yml @@ -0,0 +1,18 @@ +name: "Submit Dependency Analysis" + +on: + push: + branches: [ main ] + + schedule: + - cron: '45 15 * * 6' # https://crontab.guru/#45_15_*_*_6 + +jobs: + submit-dependency-analysis: + name: Submit Dependency Analysis + runs-on: ubuntu-latest + steps: + - name: Checkout repository + uses: actions/checkout@v4 + - name: Submit Maven Dependency Snapshot + uses: advanced-security/maven-dependency-submission-action@v4.1.1 # https://github.com/advanced-security/maven-dependency-submission-action/releases/tag/v4.1.1