Skip to content

build(deps): bump step-security/harden-runner from 2.9.0 to 2.10.1 in /.github/workflows #1512

build(deps): bump step-security/harden-runner from 2.9.0 to 2.10.1 in /.github/workflows

build(deps): bump step-security/harden-runner from 2.9.0 to 2.10.1 in /.github/workflows #1512

Workflow file for this run

name: FindBugs Analysis
on:
push:
branches: [ "main" ]
pull_request:
branches: [ "main" ]
permissions: # added using https://github.com/step-security/secure-workflows
contents: read
pull-requests: write
jobs:
test-suite:
runs-on: ubuntu-latest
steps:
- name: Harden Runner
uses: step-security/harden-runner@91182cccc01eb5e619899d80e4e971d6181294a7 # v2.10.1
with:
egress-policy: audit
- name: Checkout repository
uses: actions/checkout@d632683dd7b4114ad314bca15554477dd762a938 # v4.2.0
- name: Set up JDK 17
uses: actions/setup-java@b36c23c0d998641eff861008f374ee103c25ac73 # v4.4.0
with:
java-version: '17'
distribution: 'temurin'
cache: maven
- name: Build with Maven
run: mvn -B package --file pom.xml
- name: Generate report
run: mvn spotbugs:spotbugs
- name: Upload FindBugs report as a workflow artifact
uses: actions/upload-artifact@50769540e7f4bd5e21e526ee35c689e35e0d6874 # v4.4.0
with:
name: findbugs-report
path: target/spotbugsXml.xml
continue-on-error: true