diff --git a/.github/workflows/complete-workflow.yml b/.github/workflows/complete-workflow.yml index 304c6d7..527f715 100644 --- a/.github/workflows/complete-workflow.yml +++ b/.github/workflows/complete-workflow.yml @@ -1,4 +1,4 @@ -name: Build code, run unit test, run SAST, SCA, DAST security scans +name: Build code, run unit test, run SAST, SCA, DAST security scans... on: push jobs: @@ -14,13 +14,13 @@ jobs: distribution: 'temurin' cache: maven - name: Build with Maven cloud - run: mvn -B verify sonar:sonar -Dsonar.projectKey=javaprojectreachability -Dsonar.organization=javaprojectreachability -Dsonar.host.url=https://sonarcloud.io -Dsonar.login=$SONAR_TOKEN + run: mvn -B verify sonar:sonar -Dsonar.projectKey=javaproject-yuliani -Dsonar.organization=javaproject-yuliani -Dsonar.host.url=https://sonarcloud.io -Dsonar.login=$SONAR_TOKEN env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }} security: runs-on: ubuntu-latest - needs: build + #needs: build name: Run the SCA scan on the source code steps: - uses: actions/checkout@master @@ -44,4 +44,4 @@ jobs: docker_name: 'owasp/zap2docker-stable' target: 'http://testphp.vulnweb.com/' rules_file_name: '.zap/rules.tsv' - cmd_options: '-a' \ No newline at end of file + cmd_options: '-a'