-
Notifications
You must be signed in to change notification settings - Fork 4
148 lines (127 loc) · 3.56 KB
/
analyze-build-deploy.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
name: Analyze, Build and Deploy
on:
pull_request:
types: [opened, synchronize]
branches:
- main
push:
branches:
- main
workflow_dispatch:
env:
JDK_VERSION: 17
jobs:
safety-check:
name: Check for modified Gradle
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Validate Gradle artifacts
uses: gradle/wrapper-validation-action@v3
detekt:
name: Generate Detekt report
needs: safety-check
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
with:
fetch-depth: 0 # Required for version number generation
- name: Set up JDK
uses: actions/setup-java@v4
with:
distribution: temurin
java-version: ${{ env.JDK_VERSION }}
- name: Run Detekt
uses: gradle/[email protected]
with:
arguments: detekt
- name: Collect results
shell: sh
run: >
mkdir sarif &&
find * -name detekt.sarif -print0 |
xargs -n1 -0 bash -c 'cp "$1" "sarif/${1//\//-}"' '{}'
- name: Upload analysis results
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: sarif
wait-for-processing: true
unit-test:
name: Run unit tests
needs: safety-check
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v4
with:
fetch-depth: 0 # Required for version number generation
- name: Set up JDK
uses: actions/setup-java@v4
with:
distribution: temurin
java-version: ${{ env.JDK_VERSION }}
- name: Run tests
uses: gradle/[email protected]
with:
arguments: test
- name: Upload test results
uses: mikepenz/action-junit-report@v4
if: always() # Must execute after failed tests
with:
report_paths: '**/build/test-results/test/TEST-*.xml'
platform-test:
name: Run JUnit tests on ${{ matrix.os }}
needs: unit-test
strategy:
matrix:
os: [ macos-latest, windows-latest ] # Ubuntu is tested in "test" job
fail-fast: false # Ensure we get all failures on other platforms
runs-on: ${{ matrix.os }}
steps:
- name: Checkout
uses: actions/checkout@v4
with:
fetch-depth: 0 # Required for version number generation
- name: Set up JDK
uses: actions/setup-java@v4
with:
distribution: temurin
java-version: ${{ env.JDK_VERSION }}
- name: Run tests
uses: gradle/[email protected]
with:
arguments: test
spotless:
name: Run Spotless
needs: safety-check
runs-on: ubuntu-latest
steps:
- name: Initial Setup
uses: actions/checkout@v4
with:
fetch-depth: 0 # Required for version number generation & diff generation
- name: Set up JDK
uses: actions/setup-java@v4
with:
distribution: temurin
java-version: ${{ env.JDK_VERSION }}
- name: Run Spotless checks
id: spotlessCheck
uses: gradle/[email protected]
with:
arguments: spotlessCheck
- name: Apply Spotless fixes
if: failure()
uses: gradle/[email protected]
with:
arguments: spotlessApply
- name: Generate diff
if: failure()
shell: sh
run: |
echo "# Spotless violations" >> $GITHUB_STEP_SUMMARY
echo "```diff" >> $GITHUB_STEP_SUMMARY
git diff >> $GITHUB_STEP_SUMMARY
echo "```" >> $GITHUB_STEP_SUMMARY