118 Commits

Author SHA1 Message Date
Andreas Dangel
c0dff0d75a
Merge branch 'master' into pmd/7.0.x 2022-09-30 12:17:45 +02:00
Andreas Dangel
81a8ba0c87
[ci] Add permission contents:write for build job 2022-09-30 10:48:42 +02:00
Alex
4966e99082 build: harden git-repo-sync.yml permissions
Signed-off-by: Alex <aleksandrosansan@gmail.com>
2022-09-19 21:10:13 +02:00
Alex
600561e44c build: harden build.yml permissions
Signed-off-by: Alex <aleksandrosansan@gmail.com>
2022-09-19 21:02:02 +02:00
Andreas Dangel
7abe14fffc
Merge branch 'master' into pmd/7.0.x 2022-08-30 22:12:09 +02:00
Andreas Dangel
804e4d188a
[ci] Allow building of branch "experimental-apex-parser"
It should build like a pull request
2022-08-24 19:41:08 +02:00
Andreas Dangel
73e5a68978
Merge branch 'master' into pmd/7.0.x 2022-05-28 12:09:48 +02:00
Andreas Dangel
459c23a8b6
Bump build-tools from 17-SNAPSHOT to 18 2022-05-28 11:56:10 +02:00
Andreas Dangel
4c45d6125e
Merge branch 'master' into pmd/7.0.x 2022-04-29 13:40:05 +02:00
naveen
57dfc7fb40 chore: Set permissions for GitHub actions
Restrict the GitHub token permissions only to the required ones; this way, even if the attackers will succeed in compromising your workflow, they won’t be able to do much.

- Included permissions for the action. https://github.com/ossf/scorecard/blob/main/docs/checks.md#token-permissions

https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#permissions

https://docs.github.com/en/actions/using-jobs/assigning-permissions-to-jobs

[Keeping your GitHub Actions and workflows secure Part 1: Preventing pwn requests](https://securitylab.github.com/research/github-actions-preventing-pwn-requests/)

Signed-off-by: naveen <172697+naveensrinivasan@users.noreply.github.com>
2022-04-29 01:00:46 +00:00
Andreas Dangel
e0c0e96d07
Merge branch 'master' into pmd/7.0.x 2022-04-12 20:15:44 +02:00
dependabot[bot]
2a57871fdb
Bump actions/cache from 2 to 3
Bumps [actions/cache](https://github.com/actions/cache) from 2 to 3.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2...v3)

---
updated-dependencies:
- dependency-name: actions/cache
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-03-28 03:01:58 +00:00
Andreas Dangel
c26275a2b6
Merge remote-tracking branch 'adangel/regression-tester-update' into
pmd7-regression-tester-update
2022-03-24 18:54:45 +01:00
Andreas Dangel
f2db24ffbb
Use new caches in CI build 2022-03-18 17:04:02 +01:00
Andreas Dangel
4160092ceb
Merge branch 'master' into pr-3819 2022-03-10 10:32:41 +01:00
dependabot[bot]
45a85806b5
Bump actions/checkout from 2 to 3
Bumps [actions/checkout](https://github.com/actions/checkout) from 2 to 3.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2...v3)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-03-07 03:01:36 +00:00
Andreas Dangel
a9c3c019fe
Merge branch 'master' into pmd/7.0.x 2021-11-25 11:50:31 +01:00
Andreas Dangel
47938e674d
Bump build-tools from 17-SNAPSHOT to 17 2021-11-25 10:08:30 +01:00
Andreas Dangel
3cde14a534
[ci] Start with an empty cache 2021-11-19 11:00:08 +01:00
Andreas Dangel
f9a012a8de
Merge branch 'master' into pmd/7.0.x 2021-10-16 10:40:02 +02:00
Andreas Dangel
4bfb35cb86
Use GITHUB_TOKEN or deploy key
Also use pmd-bot@users.noreply.github.com as committer email.
2021-10-15 12:09:22 +02:00
Andreas Dangel
7cee47d71e
Merge branch 'master' into pmd/7.0.x 2021-09-27 20:11:01 +02:00
Andreas Dangel
6c60196bc1
Use build-tools 17-SNAPSHOT 2021-09-27 20:02:03 +02:00
Andreas Dangel
32bd651969
Merge branch 'master' into pmd/7.0.x 2021-07-30 14:11:48 +02:00
Andreas Dangel
fbdcec348b
Bump build-tools from 15-SNAPSHOT to 15 2021-07-30 12:12:40 +02:00
Clément Fournier
ed98ec7078
Merge branch 'master' into 7.0.x 2021-06-16 14:22:40 +02:00
Andreas Dangel
0b6c0594f1
Use build-tools scripts 14 2021-06-11 17:47:08 +02:00
Andreas Dangel
89d0d76035
Merge branch 'master' into pmd/7.0.x 2021-05-28 19:02:50 +02:00
Andreas Dangel
6d321b89e4
[ci] Use new build-tools 13
Should fix build problems under windows
2021-05-28 17:45:00 +02:00
Andreas Dangel
0fea742f3d
Merge branch 'master' into pmd/7.0.x 2021-05-28 17:01:04 +02:00
Andreas Dangel
1fce60faf0
[ci] Use ruby/setup-ruby@v1 instead of deprecated setup-ruby action 2021-05-28 16:59:31 +02:00
Andreas Dangel
50080c496d
[ci] Use ruby/setup-ruby@v1 instead of deprecated setup-ruby action 2021-05-28 16:57:32 +02:00
Clément Fournier
4dec17b937
Merge branch 'master' into 7.0.x 2021-05-09 14:36:29 +02:00
Andreas Dangel
d444f30ee4 [ci] Add gradle cache 2021-05-07 16:19:26 +02:00
Clément Fournier
9274af1e8e Merge branch 'master' into 7.0.x 2021-05-06 12:52:34 +02:00
Andreas Dangel
b73afc47f7 Bump build-tools from 11 to 12 2021-05-06 10:25:28 +02:00
Clément Fournier
10186c85ba Merge branch 'master' into 7.0.x 2021-04-30 12:49:10 +02:00
Clément Fournier
f587b7f5f2 Explain FP & FN in issue template description 2021-04-30 12:25:55 +02:00
Andreas Dangel
e7ebae1cea Improve issue templates 2021-04-29 10:53:41 +02:00
Andreas Dangel
2ada953df5 Merge branch 'master' into pmd/7.0.x 2021-04-24 18:33:52 +02:00
Andreas Dangel
375e7a1bff [ci] Improve caching for pmd-regression-tester 2021-04-24 18:01:17 +02:00
Andreas Dangel
96dc198fc6 Merge branch 'master' into pmd/7.0.x 2021-04-24 16:17:42 +02:00
Andreas Dangel
4b4af8c12f [ci] Increase fetch depth for git-repo-sync 2021-04-24 16:15:09 +02:00
Andreas Dangel
f89c9e40d4 [ci] Sync branch pmd/7.0.x to sourceforge 2021-04-23 23:01:28 +02:00
Andreas Dangel
aea369a80b Merge branch 'pr-3220' into pmd7-build-scripts-update 2021-04-22 11:35:31 +02:00
Andreas Dangel
2d5fc019ac Merge branch 'master' into build-scripts-update 2021-04-22 11:10:24 +02:00
Andreas Dangel
fe9bf3c352 Bump build-tools from 10 to 11 2021-04-22 10:59:51 +02:00
Clément Fournier
7301082d2e Merge branch 'master' into 7.0.x 2021-04-20 17:37:22 +02:00
Andreas Dangel
a09e38471f [ci] Run git-repo-sync only on pushes, not on pull requests
Also remove unneeded actions
2021-04-18 19:57:50 +02:00
Andreas Dangel
2ad755f963 [ci] Add git-repo-sync 2021-04-18 19:50:52 +02:00