Skip to content

Conversation

@rohit-wa
Copy link
Collaborator

Adding app to dependency tracker

chore: rename dependency-track workflow and set gradle group/version

Link the JIRA issue.

Please provide a clear definition of the problem and explain your solution.

Copilot AI review requested due to automatic review settings January 14, 2026 11:51
Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR integrates the DHIS2 Android Capture app with the DHIS2 dependency tracking system by adding automated SBOM (Software Bill of Materials) generation and upload capabilities.

Changes:

  • Added CycloneDX Gradle plugin for generating Software Bill of Materials (SBOM)
  • Configured Gradle project metadata with group and version for dependency tracking
  • Created a GitHub Actions workflow to automatically generate and upload SBOM daily

Reviewed changes

Copilot reviewed 3 out of 4 changed files in this pull request and generated 3 comments.

File Description
gradle/libs.versions.toml Added CycloneDX plugin version and reference for SBOM generation
app/build.gradle.kts Set Gradle group and version metadata required for dependency tracking
.github/workflows/generate-and-upload-bom.yml Created workflow to generate SBOM daily and upload to DHIS2 dependency tracker

Copilot AI review requested due to automatic review settings January 14, 2026 13:46
Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Copilot reviewed 2 out of 3 changed files in this pull request and generated 1 comment.

Copilot AI review requested due to automatic review settings January 19, 2026 15:56
@xavimolloy xavimolloy force-pushed the ANDROAPP-7432-Add-Android-app-to-DHIS2-Dependency-Tracker branch from 9b3bb4e to 5de4892 Compare January 19, 2026 15:56
Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Copilot reviewed 1 out of 2 changed files in this pull request and generated no new comments.


💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@sonarqubecloud
Copy link

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants