Skip to content

Mend CLI scan for Gradle PR #46

Mend CLI scan for Gradle PR

Mend CLI scan for Gradle PR #46

name: Mend CLI scan for Gradle PR
on:
workflow_run: # zizmor: ignore[dangerous-triggers]
workflows: ["Java CI with Gradle"]
types: [completed]
permissions:
contents: read
actions: read
checks: write
pull-requests: write
security-events: write
concurrency:
group: mend-scan-${{ github.event.workflow_run.pull_requests[0].number || github.event.workflow_run.head_sha }}
cancel-in-progress: true
jobs:
scan:
if: github.event.workflow_run.conclusion == 'success' && github.event.workflow_run.event == 'pull_request'
uses: project-ncl/shared-github-actions/.github/workflows/mend-ci.yml@70502d0c707f7d7abb41b02af80fb094a022a760 # main
with:
SCA: true
SAST: true
SCA_EXCLUDES: "analyzer/src/functTest/**,manipulation/src/functTest/**"
SAST_EXCLUDES: "analyzer/src/functTest/,manipulation/src/functTest/"
triggering_run_id: ${{ github.event.workflow_run.id }}
pr_feedback: true
secrets:
MEND_URL: ${{ secrets.MEND_URL }}
MEND_USER_KEY: ${{ secrets.MEND_USER_KEY }}
MEND_EMAIL: ${{ secrets.MEND_EMAIL }}
MEND_ORGNAME: ${{ secrets.MEND_ORGNAME }}
MEND_PRODUCTNAME: ${{ secrets.MEND_PRODUCTNAME }}