Skip to content

SonarQube Maven Scan #1

SonarQube Maven Scan

SonarQube Maven Scan #1

Workflow file for this run

name: SonarQube Maven Scan
on:
push:
branches:
- merge_requests
- master
- develop
paths:
- '.github/workflows/maven-scan.yaml'
- '.gitignore'
- 'comp-maven/src/**/*'
- 'comp-maven/pom.xml'
workflow_dispatch:
jobs:
scan-maven:
name: SonarQube Scan for Maven
runs-on: ubuntu-latest
permissions: read-all
steps:
- name: Checkout Repository
uses: actions/checkout@v2
with:
fetch-depth: 0 # Shallow clones should be disabled for a better relevancy of analysis
- name: Set up JDK 17
uses: actions/setup-java@v1
with:
java-version: 17
- name: Cache SonarQube packages
uses: actions/cache@v1
with:
path: ~/.sonar/cache
key: ${{ runner.os }}-sonar
restore-keys: ${{ runner.os }}-sonar
- name: Cache Maven packages
uses: actions/cache@v1
with:
path: ~/.m2
key: ${{ runner.os }}-m2-${{ hashFiles('**/pom.xml') }}
restore-keys: ${{ runner.os }}-m2
- name: Build and Analyze with Maven
env:
SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }}
SONAR_HOST_URL: ${{ secrets.SONAR_HOST_URL }}
SONAR_PLUGINS_DOWNLOADONLYREQUIRED: true
run: |
cd ./comp-maven
mvn -B clean org.jacoco:jacoco-maven-plugin:prepare-agent install org.jacoco:jacoco-maven-plugin:report sonar:sonar