Skip to content

Commit 9ff62d6

Browse files
committed
chore: Må legge til permission på alle workflows som skal bruke valideringen for å kunne laste opp sarif filen
1 parent 9ab0b8e commit 9ff62d6

File tree

5 files changed

+5
-0
lines changed

5 files changed

+5
-0
lines changed

.github/workflows/buildAndPublish.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -22,6 +22,7 @@ jobs:
2222
uses: navikt/sf-platform/.github/workflows/ciStaticCodeValidation.yml@main
2323
permissions:
2424
contents: read
25+
security-events: write
2526

2627
detectPackageChanges:
2728
name: Detect Package Changes

.github/workflows/ciStaticCodeValidation.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -101,6 +101,7 @@ jobs:
101101

102102
- name: Upload SARIF file
103103
uses: github/codeql-action/upload-sarif@7e3036b9cd87fc26dd06747b7aa4b96c27aaef3a
104+
if: ${{ !cancelled() && steps.paths.outcome == 'success' && github.ref_name == 'main' }}
104105
with:
105106
sarif_file: code-analyzer-report.sarif
106107
category: salesforce-code-analyzer

.github/workflows/on_push_main.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -13,6 +13,7 @@ jobs:
1313
permissions:
1414
contents: write
1515
packages: write
16+
security-events: write
1617
secrets:
1718
SF_DEVHUB_URL: ${{ secrets.SF_DEVHUB_URL }}
1819
create_release:

.github/workflows/quickbuildOnPush.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -11,6 +11,7 @@ jobs:
1111
uses: navikt/sf-platform/.github/workflows/ciStaticCodeValidation.yml@main
1212
permissions:
1313
contents: read
14+
security-events: write
1415

1516
checkChanges:
1617
name: Check changes

.github/workflows/validatePackageChangesOnPr.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -14,6 +14,7 @@ jobs:
1414
uses: navikt/sf-platform/.github/workflows/ciStaticCodeValidation.yml@main
1515
permissions:
1616
contents: read
17+
security-events: write
1718

1819
checkChanges:
1920
name: Check changes

0 commit comments

Comments
 (0)