-
Notifications
You must be signed in to change notification settings - Fork 5
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Configure SonarCloud #9
Comments
It seems that the https://github.com/siemens/cmp-ra-component/actions/runs/4105274548/jobs/7081902882#step:6:2011 |
@ralienpp the token is there, but only available for actions in this project, not forks. This is by design in GitHub Secrets. Sorry, thought you had Collaborator access here - you can still request that in oss-community-management. GitHub secrets:
So this will not work for external contributions. I'm not sure if this is still useful to you in that case. See also https://community.sonarsource.com/t/sonar-cannot-be-run-on-pr-from-a-fork/69229 if you'd like to track it upstream in SonarCloud. |
Resolved in #10 |
@ralienpp @Akretsch just a note - this is not actually solved now, it will only work for PRs from this repo but always fail for external PRs (as you can see with failing dependabot PRs). I'd say you could either restrict the sonar job to just run on main, configure it to run only on PRs from this project, or use the workaround linked in the comment above if you want to really use this. |
You're right, I need to think about it more. |
closed as requested by @ralienpp |
reopened as requested by @ralienpp |
Suggested in sonarcloud settings:
pom.xml
.github/workflows/build.yml or similar:
The text was updated successfully, but these errors were encountered: